Описание
An issue in Expense Management System v.1.0 allows a local attacker to execute arbitrary code via a crafted file uploaded to the sign-up.php component.
An issue in Expense Management System v.1.0 allows a local attacker to execute arbitrary code via a crafted file uploaded to the sign-up.php component.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2023-44824
- https://abstracted-howler-727.notion.site/CVE-2023-44824-ab76909b4a0e477b87aa8d0ca4aa4ca7
- https://abstracted-howler-727.notion.site/Vulnerability-Description-ccc2e6489a0d43859c61a7982e649da1
- https://gist.github.com/Muscial/e46c4e4031d25a3684cda124dfc45d96
Связанные уязвимости
CVSS3: 7.8
nvd
больше 2 лет назад
An issue in Expense Management System v.1.0 allows a local attacker to execute arbitrary code via a crafted file uploaded to the sign-up.php component.