Feed/CVE-2022-24241
CVE-2022-24241HIGHCVSS 7.5

CVE-2022-24241

Published Jun 2, 2022·Updated Jul 5, 2026

NVD Description

ACEweb Online Portal 3.5.065 was discovered to contain an External Controlled File Path and Name vulnerability via the txtFilePath parameter in attachments.awp.

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free