Critical severity9.9CISA KEVNVD Advisory· Published Feb 3, 2025· Updated Jun 17, 2026
CVE-2024-57968
CVE-2024-57968
Description
Advantive VeraCore before 2024.4.2.1 allows remote authenticated users to upload files to unintended folders (e.g., ones that are accessible during web browsing by other users). upload.aspx can be used for this.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
4- intezer.com/blog/research/xe-group-exploiting-zero-days/nvdExploitTechnical DescriptionThird Party Advisory
- www.solissecurity.com/en-us/insights/xe-group-from-credit-card-skimming-to-exploiting-zero-days/nvdExploitTechnical DescriptionThird Party Advisory
- advantive.my.site.com/support/s/article/VeraCore-Release-Notes-2024-4-2-1nvdPermissions RequiredProductRelease Notes
- www.cisa.gov/known-exploited-vulnerabilities-catalognvdUS Government Resource
News mentions
0No linked articles in our index yet.