Vulnerability Details CVE-2024-51152
File Upload vulnerability in Laravel CMS v.1.4.7 and before allows a remote attacker to execute arbitrary code via the shell.php a component.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.01
EPSS Ranking 75.7%
CVSS Severity
CVSS v3 Score 7.2
Products affected by CVE-2024-51152
-
cpe:2.3:a:alexstack:laravel_cms:-
-
cpe:2.3:a:alexstack:laravel_cms:0.10.0
-
cpe:2.3:a:alexstack:laravel_cms:0.11.0
-
cpe:2.3:a:alexstack:laravel_cms:0.12.0
-
cpe:2.3:a:alexstack:laravel_cms:0.13.0
-
cpe:2.3:a:alexstack:laravel_cms:0.14.0
-
cpe:2.3:a:alexstack:laravel_cms:0.15.0
-
cpe:2.3:a:alexstack:laravel_cms:0.16.0
-
cpe:2.3:a:alexstack:laravel_cms:0.17.0
-
cpe:2.3:a:alexstack:laravel_cms:0.18.0
-
cpe:2.3:a:alexstack:laravel_cms:0.19.0
-
cpe:2.3:a:alexstack:laravel_cms:0.20.0
-
cpe:2.3:a:alexstack:laravel_cms:0.21.0
-
cpe:2.3:a:alexstack:laravel_cms:0.22.0
-
cpe:2.3:a:alexstack:laravel_cms:0.5.0
-
cpe:2.3:a:alexstack:laravel_cms:0.6.0
-
cpe:2.3:a:alexstack:laravel_cms:0.7.0
-
cpe:2.3:a:alexstack:laravel_cms:0.8.0
-
cpe:2.3:a:alexstack:laravel_cms:0.9.0
-
cpe:2.3:a:alexstack:laravel_cms:0.9.1
-
cpe:2.3:a:alexstack:laravel_cms:0.9.2
-
cpe:2.3:a:alexstack:laravel_cms:0.9.3
-
cpe:2.3:a:alexstack:laravel_cms:1.0.0
-
cpe:2.3:a:alexstack:laravel_cms:1.1.0
-
cpe:2.3:a:alexstack:laravel_cms:1.2.0
-
cpe:2.3:a:alexstack:laravel_cms:1.2.1
-
cpe:2.3:a:alexstack:laravel_cms:1.3.0
-
cpe:2.3:a:alexstack:laravel_cms:1.4
-
cpe:2.3:a:alexstack:laravel_cms:1.4.1
-
cpe:2.3:a:alexstack:laravel_cms:1.4.2
-
cpe:2.3:a:alexstack:laravel_cms:1.4.3
-
cpe:2.3:a:alexstack:laravel_cms:1.4.4
-
cpe:2.3:a:alexstack:laravel_cms:1.4.5
-
cpe:2.3:a:alexstack:laravel_cms:1.4.6
-
cpe:2.3:a:alexstack:laravel_cms:1.4.7