CVE-2024-50527

Unrestricted Upload of File with Dangerous Type vulnerability in Stacks Stacks Mobile App Builder allows Upload a Web Shell to a Web Server.This issue affects Stacks Mobile App Builder: from n/a through 5.2.3.
Configurations

Configuration 1 (hide)

cpe:2.3:a:stacksmarket:stacks_mobile_app_builder:*:*:*:*:*:wordpress:*:*

History

06 Nov 2024, 17:06

Type Values Removed Values Added
CPE cpe:2.3:a:stacksmarket:stacks_mobile_app_builder:*:*:*:*:*:wordpress:*:*
CVSS v2 : unknown
v3 : 10.0
v2 : unknown
v3 : 9.8
References () https://patchstack.com/database/vulnerability/stacks-mobile-app-builder/wordpress-stacks-mobile-app-builder-plugin-5-2-3-arbitrary-file-upload-vulnerability?_s_id=cve - () https://patchstack.com/database/vulnerability/stacks-mobile-app-builder/wordpress-stacks-mobile-app-builder-plugin-5-2-3-arbitrary-file-upload-vulnerability?_s_id=cve - Third Party Advisory
First Time Stacksmarket
Stacksmarket stacks Mobile App Builder
Summary
  • (es) Vulnerabilidad de carga sin restricciones de archivos con tipo peligroso en Stacks Stacks Mobile App Builder permite cargar un Web Shell a un servidor web. Este problema afecta a Stacks Mobile App Builder: desde n/a hasta 5.2.3.

04 Nov 2024, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-11-04 14:15

Updated : 2024-11-06 17:06


NVD link : CVE-2024-50527

Mitre link : CVE-2024-50527

CVE.ORG link : CVE-2024-50527


JSON object : View

Products Affected

stacksmarket

  • stacks_mobile_app_builder
CWE
CWE-434

Unrestricted Upload of File with Dangerous Type