S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
critical·Product Based Web Vulnerabilities·Updated Oct 8, 2024

CVE-2024-46986 Scanner

CVE-2024-46986 Scanner - Remote Code Execution (RCE) vulnerability in Camaleon CMS

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsdomain, ipv4, subdomain
CostFree
3.1k
Times Used
continuous scan runs
4.8k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2024-46986
9.9
CVSScritical
Exploitable remotely over the internet · low-privilege account sufficient.

Camaleon CMS is a dynamic and advanced content management system based on Ruby on Rails. An arbitrary file write vulnerability accessible via the upload method of the MediaController allows authenticated users to write arbitrary files to any location on the web server Camaleon CMS is running on (depending on the permissions of the underlying filesystem). E.g. This can lead to a delayed remote code execution in case an attacker is able to write a Ruby file into the config/initializers/ subfolder of the Ruby on Rails application. This issue has been addressed in release version 2.8.2. Users are advised to upgrade. There are no known workarounds for this vulnerability.

Attack Vector
Network
Privileges Req.
Low
User Interaction
None
Affected
camaleon-cmsby owen2345
< 2.8.2
camaleon_cmsby tuzitio
AFFECTED< 2.8.2SAFE ✓≥ 2.8.2
Updated Aug 22, 2026View on NVD →
Detail

Camaleon CMS is a flexible content management system designed for ease of use and powerful functionality. It is widely used by bloggers, businesses, and non-profits who need a customizable and scalable web solution. Its robust plugin system allows developers to add new features and functionalities effectively. The CMS is built on the Ruby on Rails framework, known for its agility and capability to build interactive web applications. Camaleon CMS empowers users with a feature-rich platform for managing digital content with minimal technical effort. Its strength lies in providing users autonomy to manage their web presence efficiently.

The vulnerability detected in Camaleon CMS allows authenticated users to perform arbitrary file writes, potentially leading to Remote Code Execution (RCE). This critical issue arises from improper handling of file uploads in the MediaController component. An attacker can exploit this vulnerability to write arbitrary files to any location on the server where the software is deployed. If a malicious Ruby script is uploaded and executed, this could lead to full compromise of the hosting environment. The vulnerability is particularly concerning due to the potential impact on data confidentiality, integrity, and availability. Ensuring proper input validation and strict authentication checks are crucial to mitigating this risk.

The technical details of this vulnerability involve a flaw in the file upload functionality within the admin panel of Camaleon CMS. Specifically, the 'upload' method of the MediaController does not adequately validate the paths or the file types being supplied. Attackers can manipulate the file path to write files outside the designated directories, targeting the 'config/initializers/' directory to inject Ruby scripts. This oversight allows attackers to execute arbitrary code on the server. Furthermore, the exploit relies on authenticated access, meaning that any compromised user accounts could serve as entry points for exploiting the vulnerability.

Exploiting this vulnerability could have significant impacts, including data breaches, service disruptions, and further network exploitation. Attackers could gain unauthorized access to sensitive information or escalate privileges to execute administrative commands on the server. This vulnerability provides a pathway for attackers to install backdoors, modify or delete critical files, and compromise other parts of the connected network. The potential for misuse highlights the urgent need for patching affected systems and employing stringent security measures to protect against unauthorized file writing capabilities.

REFERENCES

Solution Advice
  • Update Camaleon CMS to the latest version that patches this security flaw.
  • Implement strict access controls and ensure that only trusted users have access to file upload functionalities.
  • Regularly audit user accounts to prevent unauthorized access to the application.
  • Employ a web application firewall (WAF) to provide an additional layer of security against this type of attack.
  • Perform regular security assessments to identify and mitigate vulnerabilities early.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.