Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qxwc-277h-58rw

Опубликовано: 12 окт. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

A vulnerability has been found in SourceCodester Human Resource Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /employeeview.php of the component Image File Handler. The manipulation leads to unrestricted upload. The attack can be launched remotely. The associated identifier of this vulnerability is VDB-210559.

A vulnerability has been found in SourceCodester Human Resource Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /employeeview.php of the component Image File Handler. The manipulation leads to unrestricted upload. The attack can be launched remotely. The associated identifier of this vulnerability is VDB-210559.

EPSS

Процентиль: 53%
0.00298
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-266
CWE-284
CWE-434

Связанные уязвимости

CVSS3: 6.3
nvd
больше 3 лет назад

A vulnerability has been found in SourceCodester Human Resource Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /employeeview.php of the component Image File Handler. The manipulation leads to unrestricted upload. The attack can be launched remotely. The associated identifier of this vulnerability is VDB-210559.

EPSS

Процентиль: 53%
0.00298
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-266
CWE-284
CWE-434