Arbitrary File Upload vulnerability in VvvebJs before version 1.7.5, allows unauthenticated remote attackers to execute arbitrary code and obtain sensitive information via the sanitizeFileName parameter in save.php.
Metrics
Affected Vendors & Products
References
History
Wed, 28 May 2025 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Vvveb
Vvveb vvvebjs |
|
| CPEs | cpe:2.3:a:vvveb:vvvebjs:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Vvveb
Vvveb vvvebjs |
Status: PUBLISHED
Assigner: mitre
Published: 2024-03-22T00:00:00
Updated: 2024-08-02T01:10:54.465Z
Reserved: 2024-03-19T00:00:00
Link: CVE-2024-29272
Updated: 2024-08-01T19:07:38.408Z
Status : Analyzed
Published: 2024-03-22T04:15:11.663
Modified: 2025-05-28T19:00:50.340
Link: CVE-2024-29272
No data.