← Back to browse · API

CVE-2024-31820

Severity
CRITICAL
CVSS
9.8
EPSS
0.01919
Risk score
39.87
CISA KEV
No
PoC
No
Published
2024-04-29
Modified
2024-08-02
First seen
2026-08-08
Aliases
EUVD-2024-29692, GHSA-PJ54-FM22-6G5P
Products
n/a:n/a n/a
Sources
euvd EUVD-2024-29692

Description

An issue in Ecommerce-CodeIgniter-Bootstrap commit v. d22b54e8915f167a135046ceb857caaf8479c4da allows a remote attacker to execute arbitrary code via the getLangFolderForEdit method of the Languages.php component.

References