CVE-2024-58279 — appRain CMF 4.0.5 contains an authenticated remote code execution vulnerability that allows administrative users to upload malicious PHP files through the filemanager upload endpoint. Attackers can le — CVE Database · The Intelligence Room