Arbitrary File Upload vulnerability in VvvebJs before version 1.7.5, allows unauthenticated remote attackers to execute arbitrary code and obtain sensitive information via the sanitizeFileName parameter in save.php.
Metrics
Affected Vendors & Products
References
History
Wed, 28 May 2025 19:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Vvveb
Vvveb vvvebjs |
|
CPEs | cpe:2.3:a:vvveb:vvvebjs:*:*:*:*:*:*:*:* | |
Vendors & Products |
Vvveb
Vvveb vvvebjs |

Status: PUBLISHED
Assigner: mitre
Published: 2024-03-22T00:00:00
Updated: 2024-08-02T01:10:54.465Z
Reserved: 2024-03-19T00:00:00
Link: CVE-2024-29272

Updated: 2024-08-01T19:07:38.408Z

Status : Analyzed
Published: 2024-03-22T04:15:11.663
Modified: 2025-05-28T19:00:50.340
Link: CVE-2024-29272

No data.