Security Advisory

CVE-2024-36622

9.8
CRITICAL

Vulnerability Description

In RaspAP raspap-webgui 3.0.9 and earlier, a command injection vulnerability exists in the clearlog.php script. The vulnerability is due to improper sanitization of user input passed via the logfile parameter.
Published Date November 29, 2024
Official Source NIST NVD Advisory