CVE-2024-56973
CVE-2024-56973: Remote code execution vulnerability in Alvaria Unified IP Unified Director. This vulnerability stems from insecure permissions within the ProcessUploadFromURL.jsp component. Attackers can exploit this flaw by manipulating the source and filename parameters, ultimately leading to arbitrary code execution. The SOCRadar Vulnerability Risk Score (SVRS) is 30, indicating a moderate level of risk, but the "In The Wild" tag raises concern. While not immediately critical, CVE-2024-56973 represents a significant threat. Immediate patching of Alvaria Unified IP Unified Director before v.7.2SP2 is advised to prevent potential system compromise. Organizations using affected versions of Alvaria should prioritize this security update.
Indicators of Compromise
Exploits
News
Social Media
Affected Software
References
CWE Details
CVE Radar
Real-time CVE Intelligence & Vulnerability Management Platform
CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.