TROYANOSYVIRUS
Retour aux CVEs

CVE-2024-7694

HIGHCISA KEV
7.2

Description

ThreatSonar Anti-Ransomware from TeamT5 does not properly validate the content of uploaded files. Remote attackers with administrator privileges on the product platform can upload malicious files, which can be used to execute arbitrary system command on the server.

Details CVE

Score CVSS v3.17.2
SeveriteHIGH
Vecteur CVSSCVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Vecteur d'attaqueNETWORK
ComplexiteLOW
Privileges requisHIGH
Interaction utilisateurNONE
Publie8/12/2024
Derniere modification2/18/2026
Sourcekev
Observations honeypot0

CISA KEV

FournisseurTeamT5
ProduitThreatSonar Anti-Ransomware
Nom vulnerabiliteTeamT5 ThreatSonar Anti-Ransomware Unrestricted Upload of File with Dangerous Type Vulnerability
Date ajout KEV2026-02-17
Date limite remediation2026-03-10
Utilise dans ransomwareUnknown

Produits affectes

teamt5:threatsonar_anti-ransomware

Faiblesses (CWE)

CWE-434

Correlations IOC

Aucune correlation enregistree

This product uses data from the NVD API but is not endorsed or certified by the NVD.