CyberRota Analysis
AI-GeneratedPacketfence 13.2.0 contains a vulnerability in its WebGui interface that permits authenticated users to execute arbitrary code remotely. This flaw poses a significant risk as it can lead to unauthorized access and control over the affected system. Organizations using this version of Packetfence should prioritize remediation to mitigate potential exploitation.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Detected Signals
remote code execution code execution
GitHub PoC Links
Note: these links are listed for security research and verification purposes only.
CVE
CVE-2024-39024
Severity
HIGH
CVSS
8.8
EPSS
0.69%
Original NVD Description
In Packetfence 13.2.0, the WebGui interface setting allows authenticated remote code execution.