Medium severity6.5NVD Advisory· Published Jan 15, 2025· Updated Apr 15, 2026
CVE-2024-41454
CVE-2024-41454
Description
An arbitrary file upload vulnerability in the UI login page logo upload function of Process Maker pm4core-docker 4.1.21-RC7 allows attackers to execute arbitrary code via uploading a crafted PHP or HTML file.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
News mentions
0No linked articles in our index yet.