Today > vulnerabilities   -   You can now download lists of IOCs here!

CVE-2024-48514

Oct. 25, 2024, 12:56 p.m.

Product(s) Impacted

php-heic-to-jpg

  • <= 1.0.5

Description

php-heic-to-jpg <= 1.0.5 is vulnerable to remote code execution. An attacker who can upload heic images is able to execute code on the remote server via the file name. As a result, the CIA is no longer guaranteed. This affects php-heic-to-jpg 1.0.5 and below.

Weaknesses

Date

Published: Oct. 24, 2024, 6:15 p.m.

Last Modified: Oct. 25, 2024, 12:56 p.m.

Status : Awaiting Analysis

CVE has been recently published to the CVE List and has been received by the NVD.

More info

Source

cve@mitre.org

References