High severity7.3NVD Advisory· Published Mar 11, 2025· Updated Jun 17, 2026
CVE-2024-51319
CVE-2024-51319
Description
A local file include vulnerability in the /servlet/Report of Zucchetti Ad Hoc Infinity 2.4 allows an authenticated attacker to achieve Remote Code Execution by uploading a jsp web/reverse shell through /jsp/zimg_upload.jsp.
Affected products
3cpe:2.3:a:zucchetti:ad_hoc_infinity:2.4:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:zucchetti:ad_hoc_infinity:2.4:*:*:*:*:*:*:*
- (no CPE)
- (no CPE)range: = 2.4
Patches
Vulnerability mechanics
References
1- members.backbox.org/zucchetti-ad-hoc-infinity-multiple-vulnerabilities/nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.