Description
A vulnerability classified as critical has been found in SourceCodester Young Entrepreneur E-Negosyo System 1.0. Affected is an unknown function of the file admin/products/controller.php?action=add. The manipulation of the argument image leads to unrestricted upload. It is possible to launch the attack remotely. VDB-224622 is the identifier assigned to this vulnerability.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-23956 | A vulnerability classified as critical has been found in SourceCodester Young Entrepreneur E-Negosyo System 1.0. Affected is an unknown function of the file admin/products/controller.php?action=add. The manipulation of the argument image leads to unrestricted upload. It is possible to launch the attack remotely. VDB-224622 is the identifier assigned to this vulnerability. |
References
| Link | Providers |
|---|---|
| https://vuldb.com/?ctiid.224622 |
|
| https://vuldb.com/?id.224622 |
|
History
No history.
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2024-08-02T05:57:25.139Z
Reserved: 2023-03-30T18:51:32.235Z
Link: CVE-2023-1734
No data.
Status : Modified
Published: 2023-03-30T19:15:06.437
Modified: 2024-11-21T07:39:47.540
Link: CVE-2023-1734
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD