What is CVE-2024-14046?
CVE-2024-14046 is a security vulnerability found in OpenBoxes up to version 0.9.1, related to unrestricted file upload in the Document Upload Controller. This issue affects the DocumentController function and could allow unauthorized file uploads. Upgrading to the latest version is recommended to mitigate the risk.
Azərbaycanca: CVE-2024-14046 OpenBoxes proqramının 0.9.1 versiyasına qədər olan versiyalarında aşkarlanmış təhlükəsizlik zəifliyidir. Bu problem Document Upload Controller komponentindəki məhdudiyyətsiz fayl yükləməsi ilə bağlıdır. Təsirə məruz qalmamaq üçün proqramı ən son versiyaya yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-434
FAQ2
Which versions of OpenBoxes are affected by CVE-2024-14046?
This vulnerability affects OpenBoxes versions up to 0.9.1.
In which component of OpenBoxes was CVE-2024-14046 discovered?
The vulnerability was discovered in the Document Upload Controller component, specifically in the DocumentController function.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.