CVE-2024-56829

CRITICAL

Huang Yaoshi Pharmaceutical Management Software through 16.0 allows arbitrary file upload via a .asp filename in the fileName element of the UploadFile element in a SOAP request to /XSDService.asmx.

Affects 0 products across 1 vendor.

BCS6.42
CVSS 3.110.0
EPSS0.6%
Percentile44th
PatchUnknown
CVSS Vector — Plain English Remotely exploitable over the network, low complexity, no authentication required, no user interaction needed, can impact systems beyond the vulnerable component, full confidentiality impact, full integrity impact, full availability impact.
CWE Weakness Definitions
CWE-434: Unrestricted Upload of File with Dangerous Type

Application allows file uploads without validating type, enabling upload of executable code or web shells.

Related Attack Patterns (CAPEC)
CAPEC-1 Accessing Functionality Not Properly Constrained by ACLs
via CWE-434

Mapping is CWE-to-CAPEC per MITRE CAPEC 3.9.

◆ SAGE Intelligence — CITED Relevance Research Team

Huang Yaoshi Pharmaceutical Management Software through version 16.0 is vulnerable to arbitrary file upload, which can lead to remote code execution due to the ability to upload .asp files via a SOAP request.

BSID: BS-2025-GLOBAL-222939-C • Model: /workspace/models/qwen2.5-coder-32b-instruct-bf16 • Confidence: HIGH

Is this CVE in your environment?

BreachSpider monitors your ICS/OT environment for vulnerabilities like this one. No agents or network access required. Free to start.

Check My Environment →
Frequently Asked Questions
What is CVE-2024-56829?
Huang Yaoshi Pharmaceutical Management Software through version 16.0 is vulnerable to arbitrary file upload, which can lead to remote code execution due to the ability to upload .asp files via a SOAP request.
What is the CVSS score for CVE-2024-56829?
CVE-2024-56829 has CVSS 10.0 (Critical). Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H. EPSS: 0.6%.
Is CVE-2024-56829 actively exploited?
No confirmed active exploitation of CVE-2024-56829 as of 2026-05-30.
How do I remediate CVE-2024-56829?
Priority: IMMEDIATE.
What systems are affected by CVE-2024-56829?
CVE-2024-56829 affects: Element.
Vulnerability Details
CVE IDCVE-2024-56829
BSIDBS-2025-GLOBAL-222939-C BreachSpider Global ID
CVSS VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Published2025-01-02
Last Modified2026-04-15
ICS Relevance0%
Weakness (CWE)
SourceNVD
Official Description

Huang Yaoshi Pharmaceutical Management Software through 16.0 allows arbitrary file upload via a .asp filename in the fileName element of the UploadFile element in a SOAP request to /XSDService.asmx.

Source: NIST NVD / MITRE CVE Database

Attack Vector Analysis — CITED Relevance

An attacker can exploit this vulnerability by sending a SOAP request to /XSDService.asmx with a malicious .asp file attached in the fileName element of the UploadFile element. This allows the attacker to upload and execute arbitrary code on the server.

Exploitation Likelihood: CRITICAL

Affected Products
VendorProductFixed Version
Element —
Remediation

No patch URL on record. Monitor vendor security advisories directly.

Threat Intelligence
● Threat Intelligence Validated: August 2026 | Threat Age: 580 Days
CISA KEVNot in KEV catalog
Public ExploitNot confirmed
PoC CodeNot confirmed
SAGE Enrichment Record — provenance & audit hash
Model/workspace/models/qwen2.5-coder-32b-instruct-bf16
ConfidenceHIGH
Enriched At2026-05-24
SHA-512 Audit Hashfee36c93794fe4dd65d11e847c3f1d2056d16f470b32f24b62b5cf5de202d1cb6c23c807ebf848d8faf2281471da1750934710d9e07657e4b5b64aebe0935e72
Related CVEs affecting Element
CVE-2024-32962 10.0 xml-crypto is an xml digital signature and encryption library for Node.js. In... CVE-2026-7546 9.8 A security vulnerability has been detected in Totolink NR1800X 9.1.0u.6279_B2... CVE-2026-7719 9.8 A security flaw has been discovered in Totolink WA300 5.2cu.7112_B20190227. T... CVE-2026-6279 9.8 The Avada Builder (fusion-builder) plugin for WordPress is vulnerable to Unau... CVE-2026-7243 9.8 A vulnerability was identified in Totolink A8000RU 7.1cu.643_b20200521. The a...
View all Element CVEs →

Critical Severity - Know Your Exposure

A CVSS 10.0 vulnerability in your ICS environment cannot wait. BreachSpider maps critical CVEs to your specific assets and tells you what to fix first.

Check Your Assets Free →