VYPR
Medium severity6.3NVD Advisory· Published May 6, 2024· Updated Jun 17, 2026

CVE-2024-33752

CVE-2024-33752

Description

An arbitrary file upload vulnerability exists in emlog pro 2.3.0 and pro 2.3.2 at admin/views/plugin.php that could be exploited by a remote attacker to submit a special request to upload a malicious file to execute arbitrary code.

Affected products

4
  • Emlog/Emlog4 versions
    cpe:2.3:a:emlog:emlog:2.3.0:*:*:*:pro:*:*:*+ 3 more
    • cpe:2.3:a:emlog:emlog:2.3.0:*:*:*:pro:*:*:*
    • cpe:2.3:a:emlog:emlog:2.3.2:*:*:*:pro:*:*:*
    • (no CPE)
    • (no CPE)range: 2.3.0, 2.3.2

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.