Security Advisory

CVE-2024-33615

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2024-05-15 19:23:24
Last updated 2024-08-02 02:36:04
Assigner icscert
CVSS score 8.8
State PUBLISHED

Description

A specially crafted Zip file containing path traversal characters can be imported to the CyberPower PowerPanel server, which allows file writing to the server outside the intended scope, and could allow an attacker to achieve remote code execution.