Hfo4 maintains a narrowly scoped file-sharing application, Shudong Share, where the observed vulnerability pattern centers on unrestricted file upload handling. The recurring exposure reflects a common weakness in web-based file management where insufficient type validation and upload restrictions can enable arbitrary file placement. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Hfo4 over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-8338HIGH A vulnerability was found in HFO4 shudong-share 2.4.7. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /includes/fileReceiv | Aug 30, 2024 | 8.8 | 24 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Hfo4.
Media articles that mention a CVE ID that affects a product developed by Hfo4 — matched by CVE ID, not by vendor name.