A vulnerability was found in cym1102 nginxWebUI up to 3.9.9. It has been declared as problematic. Affected by this vulnerability is the function upload of the file /adminPage/main/upload. The manipulation leads to unrestricted upload. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-260575.
History

Thu, 21 Aug 2025 15:15:00 +0000

Type Values Removed Values Added
First Time appeared Cym1102
Cym1102 nginxwebui
CPEs cpe:2.3:a:cym1102:nginxwebui:*:*:*:*:*:*:*:*
Vendors & Products Cym1102
Cym1102 nginxwebui

cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published: 2024-04-13T14:00:06.364Z

Updated: 2024-08-01T20:20:01.106Z

Reserved: 2024-04-12T19:33:30.405Z

Link: CVE-2024-3736

cve-icon Vulnrichment

Updated: 2024-08-01T20:20:01.106Z

cve-icon NVD

Status : Analyzed

Published: 2024-04-13T14:15:07.490

Modified: 2025-08-21T15:04:07.650

Link: CVE-2024-3736

cve-icon Redhat

No data.