← Back to browse · API

CVE-2024-50707

Severity
CRITICAL
CVSS
10.0
EPSS
0.00815
Risk score
40.29
CISA KEV
No
PoC
No
Published
2025-03-04
Modified
2025-03-04
First seen
2026-08-07
Aliases
EUVD-2024-54228, GHSA-R9QC-PQ8G-X74P
Products
n/a:n/a n/a
Sources
euvd EUVD-2024-54228

Description

Unauthenticated remote code execution vulnerability in Uniguest Tripleplay before 24.2.1 allows remote attackers to execute arbitrary code via the X-Forwarded-For header in an HTTP GET request.

References