VYPR
High severity8.8NVD Advisory· Published Apr 27, 2023· Updated Jun 17, 2026

CVE-2023-24836

CVE-2023-24836

Description

SUNNET CTMS has vulnerability of path traversal within its file uploading function. An authenticated remote attacker with general user privilege can exploit this vulnerability to upload and execute scripts onto arbitrary directories to perform arbitrary system operation or disrupt service.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Sun.net/Ehrd Ctms3 versions
    cpe:2.3:a:sun.net:ehrd_ctms:7.0_1227:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:sun.net:ehrd_ctms:7.0_1227:*:*:*:*:*:*:*
    • (no CPE)
    • (no CPE)range: 7.0 1227

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.