CVE-2024-44014: Vmax Studio Vmax Project Manager

Critical severity, CVSS 9.6. EPSS: 0.6% chance of exploitation in the next 30 days.

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Vmax Studio Vmax Project Manager vmax-project-manager allows PHP Local File Inclusion.This issue affects Vmax Project Manager: from n/a through <= 1.0.

Affected products

  • Vmax Studio Vmax Project Manager: up to and including 1.0
  • Vmaxstudio Vmax Project Manager: up to and including 1.0

Published 2024-10-05. Last modified 2026-06-17.