CVE-2024-34906
5.4MEDIUMAn arbitrary file upload vulnerability in dootask v0.30.13 allows attackers to execute arbitrary code via uploading a crafted PDF file.
Published: 5/15/2024Updated: 11/21/2024
Description
An arbitrary file upload vulnerability in dootask v0.30.13 allows attackers to execute arbitrary code via uploading a crafted PDF file.
AI AnalysisPowered by AI
Affected Products
dootaskdootask
0.30.13
References
- https://github.com/kuaifan/dootask/issues/210ExploitThird Party Advisory
- https://github.com/kuaifan/dootask/issues/210ExploitThird Party Advisory