1 results (0.002 seconds)
CVSS: 9.8EPSS: 0%CPEs: 1EXPL: 0

CVE-2024-0864 – RCE in Laragon
https://notcve.org/view.php?id=CVE-2024-0864
29 Feb 2024 — Enabling Simple Ajax Uploader plugin included in Laragon open-source software allows for a remote code execution (RCE) attack via an improper input validation in a file_upload.php file which serves as an example. By default, Laragon is not vulnerable until a user decides to use the aforementioned plugin. Habilitar el complemento Simple Ajax Uploader incluido en el software de código abierto Laragon permite un ataque de ejecución remota de código (RCE) a través de una validación de entrada incorrecta en un a... • https://cert.pl/en/posts/2024/02/CVE-2024-0864 • CWE-20: Improper Input Validation CWE-434: Unrestricted Upload of File with Dangerous Type •