Vulnerability CVE-2024-9985


Published: 2024-10-15

Description:
Enterprise Cloud Database from Ragic does not properly validate the file type for uploads. Attackers with regular privileges can upload a webshell and use it to execute arbitrary code on the remote server.

 References:
https://www.twcert.org.tw/tw/cp-132-8152-09e81-1.html
https://www.twcert.org.tw/en/cp-139-8153-1120e-2.html

Copyright 2026, cxsecurity.com

 

Back to Top