Описание
An Arbitrary File Upload in the Upload Image component in Sourcecodester Online Bike Rental v1.0 allows authenticated administrator to conduct remote code execution.
Ссылки
- Third Party AdvisoryVDB Entry
- Product
- Third Party AdvisoryVDB Entry
- Product
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:online_bike_rental_project:online_bike_rental:1.0:*:*:*:*:*:*:*
EPSS
Процентиль: 84%
0.02232
Низкий
9.1 Critical
CVSS3
6.5 Medium
CVSS2
Дефекты
CWE-434
Связанные уязвимости
github
больше 3 лет назад
An Arbitrary File Upload in the Upload Image component in Sourcecodester Online Bike Rental v1.0 allows authenticated administrator to conduct remote code execution.
EPSS
Процентиль: 84%
0.02232
Низкий
9.1 Critical
CVSS3
6.5 Medium
CVSS2
Дефекты
CWE-434