File upload vulnerability in PHPGurukul Online Security Guards Hiring System v.1.0 allows a remote attacker to execute arbitrary code via a crafted php file to the \osghs\admin\images file.
References
| Link | Resource |
|---|---|
| https://nvd.nist.gov/vuln/detail/CVE-2023-0527 | Third Party Advisory US Government Resource |
| https://github.com/Trinity-SYT-SECURITY/arbitrary-file-upload-RCE/blob/main/Online%20Security%20Guards%20Hiring%20System%201.0.md | Third Party Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2023-07-14 15:15
Updated : 2023-07-26 14:06
NVD link : CVE-2023-36119
Mitre link : CVE-2023-36119
JSON object : View
Products Affected
online_security_guards_hiring_system_project
- online_security_guards_hiring_system
CWE
CWE-434
Unrestricted Upload of File with Dangerous Type
