CVE-2024-2054

The Artica-Proxy administrative web application will deserialize arbitrary PHP objects supplied by unauthenticated users and subsequently enable code execution as the "www-data" user.
Configurations

Configuration 1 (hide)

cpe:2.3:a:articatech:artica_proxy:4.50:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-03-21 02:52

Updated : 2025-06-17 13:56


NVD link : CVE-2024-2054

Mitre link : CVE-2024-2054

CVE.ORG link : CVE-2024-2054


JSON object : View

Products Affected

articatech

  • artica_proxy
CWE
CWE-502

Deserialization of Untrusted Data