CVE-2024-25096
Improper Control of Generation of Code ('Code Injection') vulnerability in Canto Inc. Canto allows Code Injection.This issue affects Canto: from n/a through 3.0.7.
- Affected products
- Canto
- Canto
- ≤ 3.0.7
- CVSS 3.1
- 10.0 CRITICAL
- EPSS
- 0.7% (50th percentile)
- Weakness
- CWE-94
- NVD status
- Modified
- Published
- 2024-04-03
- Attack patterns
- CAPEC-242
CVE-2024-25096 at NVD
3 known exploits for CVE-2024-25096
Proof-of-concept code and exploit modules indexed by Sploitus