CVE-2022-24239
Critical · CVSS 9.8ACEweb Online Portal — Unrestricted File Upload (CWE-434)
- CVSS
- 9.8
- nvd
- EPSS
- 1.28%
- 67th pct
- KEV
- No
- Class
- other
- CWE-434
Description
ACEweb Online Portal 3.5.065 was discovered to contain an unrestricted file upload vulnerability via attachments.awp.
Search profile — drives PoC discovery
Symbols attachments.awpACEweb Online Portal.awp
Keywords CVE-2022-24239ACEweb Online Portalunrestricted file uploadattachments.awpacewareacewebfile upload vulnerability
Versions: 3.5.065
References
Status: enriched · ingested 2026-07-05T06:00:39.000Z · profiled 2026-07-05T06:30:39.000Z