{ "id": "CVE-2024-25274", "sourceIdentifier": "cve@mitre.org", "published": "2024-02-20T16:15:10.230", "lastModified": "2024-02-20T19:50:53.960", "vulnStatus": "Awaiting Analysis", "cveTags": [], "descriptions": [ { "lang": "en", "value": "An arbitrary file upload vulnerability in the component /sysFile/upload of Novel-Plus v4.3.0-RC1 allows attackers to execute arbitrary code via uploading a crafted file." }, { "lang": "es", "value": "Una vulnerabilidad de carga de archivos arbitrarios en el componente /sysFile/upload de Novel-Plus v4.3.0-RC1 permite a los atacantes ejecutar c\u00f3digo arbitrario cargando un archivo manipulado." } ], "metrics": {}, "references": [ { "url": "https://gist.github.com/capable-Hub/725c294f1aeac729fa314a32fef55d5a", "source": "cve@mitre.org" }, { "url": "https://reference1.example.com/login", "source": "cve@mitre.org" } ] }