An arbitrary file upload vulnerability in M2Soft CROWNIX Report & ERS v5.x to v5.5.14.1070, v7.x to v7.4.3.960, and v8.x to v8.2.0.345 allows attackers to execute arbitrary code via supplying a crafted file.
CVE ID: CVE-2024-57338
Vendor: n/a
Product: n/a
EPSS Score: 0.06% (probability of being exploited)
EPSS Percentile: 19.93% (scored less or equal to compared to others)
EPSS Date: 2025-06-17 (when was this score calculated)