← volver
CVE-2024-45256criticalCWE-22

CVE-2024-45256

43Vexday Risk Score

Corrige pronto. Ella tiene exploit funcional público.

ssvc Attendcvss 9.8epss 5.6%
de la publicación al arma0 días
Publicada en NVD26 ago
metasploit15 ago
probabilidad de explotación
5.6%top 8% de las CVE
explotación observada
noninguna fuente lo reporta
An arbitrary file write issue in the exfiltration endpoint in BYOB (Build Your Own Botnet) 2.0 allows attackers to overwrite SQLite databases and bypass authentication via an unauthenticated HTTP request with a crafted parameter. This occurs in file_add in api/files/routes.py.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Productos afectados
n/a · n/a