VYPR
High severity7.3NVD Advisory· Published Jan 30, 2024· Updated Jun 17, 2026

CVE-2024-1035

CVE-2024-1035

Description

A vulnerability has been found in openBI up to 1.0.8 and classified as critical. This vulnerability affects the function uploadIcon of the file /application/index/controller/Icon.php. The manipulation of the argument image leads to unrestricted upload. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-252310 is the identifier assigned to this vulnerability.

Affected products

2
  • openBI/openBIdescription
  • openBI/openBIllm-fuzzy
    Range: <=1.0.8

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.