Aqua Vulnerability Database
Get Demo
Vulnerabilities
Misconfiguration
Runtime Security
Compliance
CVE Vulnerabilities
CVE-2024-38294
Published:
Jun 13, 2024
| Modified:
Aug 02, 2024
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
Additional information
NVD
https://nvd.nist.gov/vuln/detail/CVE-2024-38294
CWE
https://cwe.mitre.org/data/definitions/.html
ALCASAR before 3.6.1 allows email_registration_back.php remote code execution.
Affected Software
Name
Vendor
Start Version
End Version
Alcasar
Alcasar
*
3.6.1 (excluding)
References
https://adullact.net/frs/download.php/file/8930/CHANGELOG.md
https://alcasar.net/download
Aqua Container Security