Douchat 4.0.5 suffers from an arbitrary file upload vulnerability via Public/Plugins/webuploader/server/preview.php.
                
            References
                    Configurations
                    History
                    23 Jun 2025, 18:09
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () https://github.com/w0x68y/cve-lists/blob/main/CMS/Douchat/Douchat%204.0.5%20arbitrary%20file%20upload%20vulnerability.md - Broken Link, Exploit | |
| First Time | 
        
        Douchat douchat
         Douchat  | 
|
| CPE | cpe:2.3:a:douchat:douchat:4.0.5:*:*:*:*:*:*:* | 
21 Nov 2024, 09:20
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () https://github.com/w0x68y/cve-lists/blob/main/CMS/Douchat/Douchat%204.0.5%20arbitrary%20file%20upload%20vulnerability.md - | 
20 Aug 2024, 16:35
| Type | Values Removed | Values Added | 
|---|---|---|
| CVSS | 
        v2 :  v3 :  | 
    
        v2 : unknown
         v3 : 9.8  | 
| CWE | CWE-22 | |
| Summary | 
        
        
  | 
28 May 2024, 16:15
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2024-05-28 16:15
Updated : 2025-06-23 18:09
NVD link : CVE-2024-35324
Mitre link : CVE-2024-35324
CVE.ORG link : CVE-2024-35324
JSON object : View
Products Affected
                douchat
- douchat
 
CWE
                
                    
                        
                        CWE-22
                        
            Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
