CVE-2024-31820
CVE-2024-31820 is a remote code execution vulnerability in Ecommerce-CodeIgniter-Bootstrap. It allows attackers to run arbitrary code. The flaw exists within the getLangFolderForEdit
method of the Languages.php
component.
This arbitrary code execution vulnerability poses a significant risk because it can lead to full system compromise. An attacker could potentially gain complete control over the affected server. While the CVSS score is 0, the SOCRadar Vulnerability Risk Score (SVRS) of 30, while not critical, indicates the vulnerability should be monitored, especially as it is tagged as 'In The Wild'. The vulnerability lets an attacker execute commands. The risk is amplified by its potential for widespread impact on e-commerce platforms using the vulnerable component.
Indicators of Compromise
Exploits
News
Social Media
Affected Software
References
CWE Details
CVE Radar
Real-time CVE Intelligence & Vulnerability Management Platform
CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.