Threat Intel

v0.1

← CVEs

CVE-2026-24673

MED 4.3
Published
2026-02-03
Last Modified
2026-02-10
Affected Apps
7
Affected Devices
8
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
The Open eClass platform (formerly known as GUnet eClass) is a complete course management system. Prior to version 4.2, a file upload validation bypass vulnerability allows attackers to upload files with prohibited extensions by embedding them inside ZIP archives and extracting them using the application’s built-in decompression functionality. This issue has been patched in version 4.2.
References 1