CVE-2024-56973
Critical severity, CVSS 9.8. EPSS: 0.9% chance of exploitation in the next 30 days.
Insecure Permissions vulnerability in Alvaria, Inc Unified IP Unified Director before v.7.2SP2 allows a remote attacker to execute arbitrary code via the source and filename parameters to the ProcessUploadFromURL.jsp component.
Published 2025-02-14. Last modified 2026-06-17.