An issue was discovered in GNU Savane v.3.13 and before, allows a remote attacker to execute arbitrary code and escalate privileges via a crafted file to the upload.php component.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://github.com/ally-petitt/CVE-2024-29399 |
![]() ![]() ![]() |
History
Tue, 17 Jun 2025 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Gnu
Gnu savane |
|
CPEs | cpe:2.3:a:gnu:savane:*:*:*:*:*:*:*:* | |
Vendors & Products |
Gnu
Gnu savane |
Wed, 28 Aug 2024 19:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-94 | |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: mitre
Published: 2024-04-11T00:00:00
Updated: 2024-08-28T17:58:19.558Z
Reserved: 2024-03-19T00:00:00
Link: CVE-2024-29399

Updated: 2024-08-02T01:10:55.421Z

Status : Analyzed
Published: 2024-04-11T06:15:06.903
Modified: 2025-06-17T20:53:19.370
Link: CVE-2024-29399

No data.