CVE-2024-29399

HIGH

GNU Savane < 3.13 - Remote Code Execution via upload.php

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2024-29399. PoCs published by ally-petitt.

AI-analyzed exploit summary CVE-2024-29399 exploits an unrestricted file upload vulnerability in Savane v3.13 and prior, allowing XSS or RCE depending on server configuration. The PoC demonstrates file uploads of malicious HTML or PHP files to achieve code execution.

Description

An issue was discovered in GNU Savane v.3.13 and before, allows a remote attacker to execute arbitrary code and escalate privileges via a crafted file to the upload.php component.

Exploits (1)

nomisec WORKING POC
by ally-petitt · poc
https://github.com/ally-petitt/CVE-2024-29399

CVE-2024-29399 exploits an unrestricted file upload vulnerability in Savane v3.13 and prior, allowing XSS or RCE depending on server configuration. The PoC demonstrates file uploads of malicious HTML or PHP files to achieve code execution.

Classification
Working Poc 90%
Attack Type
Xss | Rce
Complexity
Trivial
Reliability
Reliable
Target: Savane v3.13 and prior
No auth needed
Prerequisites: Access to the upload endpoint (/register/upload.php) · Misconfigured web server for RCE
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (1)

Core 1

Scores

CVSS v3 7.6
EPSS 0.0095
EPSS Percentile 56.5%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:L

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact total

Details

CWE
CWE-94
Status published
Products (1)
gnu/savane < 3.13
Published Apr 11, 2024
Tracked Since Feb 18, 2026