CVE-2024-48514
Oct. 25, 2024, 12:56 p.m.
Tags
Product(s) Impacted
php-heic-to-jpg
- <= 1.0.5
Description
php-heic-to-jpg <= 1.0.5 is vulnerable to remote code execution. An attacker who can upload heic images is able to execute code on the remote server via the file name. As a result, the CIA is no longer guaranteed. This affects php-heic-to-jpg 1.0.5 and below.
Weaknesses
Date
Published: Oct. 24, 2024, 6:15 p.m.
Last Modified: Oct. 25, 2024, 12:56 p.m.
Status : Awaiting Analysis
CVE has been recently published to the CVE List and has been received by the NVD.
More infoSource
cve@mitre.org