漏洞标题
code-projects 招生管理系统 学生头像.php 无限制的上传
漏洞描述信息
代码项目:招生管理系统student_avatar.php无限制上传
CVSS信息
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
漏洞类别
危险类型文件的不加限制上传
漏洞标题
code-projects Admission Management System student_avatar.php unrestricted upload
漏洞描述信息
A vulnerability was found in code-projects Admission Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file student_avatar.php. The manipulation leads to unrestricted upload. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-243728.
CVSS信息
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
漏洞类别
危险类型文件的不加限制上传
漏洞标题
Admission Management System 安全漏洞
漏洞描述信息
Admission Management System是code-projects开源的一个招生管理系统。 code-projects Admission Management System 1.0版本存在安全漏洞,该漏洞源于文件student_avatar.php的一些未知功能会导致上传不受限制。
CVSS信息
N/A
漏洞类别
其他