CVE-2024-26503

Unrestricted File Upload vulnerability in Greek Universities Network Open eClass v.3.15 and earlier allows attackers to run arbitrary code via upload of crafted file to certbadge.php endpoint.
CVSS

No CVSS.

Configurations

Configuration 1 (hide)

cpe:2.3:a:openeclass:openeclass:*:*:*:*:*:*:*:*

History

10 Jun 2025, 16:05

Type Values Removed Values Added
References () https://www.less-secure.com/2024/03/open-eclass-cve-2024-26503-unrestricted.html - () https://www.less-secure.com/2024/03/open-eclass-cve-2024-26503-unrestricted.html - Exploit, Third Party Advisory
CPE cpe:2.3:a:openeclass:openeclass:*:*:*:*:*:*:*:*
First Time Openeclass openeclass
Openeclass

15 Mar 2024, 12:53

Type Values Removed Values Added
New CVE

Information

Published : 2024-03-14 22:15

Updated : 2025-06-10 16:05


NVD link : CVE-2024-26503

Mitre link : CVE-2024-26503


JSON object : View

Products Affected

openeclass

  • openeclass
CWE

No CWE.