The CRUDDIY project is vulnerable to... CVE-2024-4748

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

The CRUDDIY project is vulnerable to shell command injection via sending a crafted POST request to the application server. The exploitation risk is limited since CRUDDIY is meant to be launched locally. Nevertheless, a user with the project running on their computer might visit a website which would send such a malicious request to the locally launched server.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息