Arbitrary File Upload Vulnerability in mojoPortal v2.7 Allows Remote Code Execution via Crafted PNG File

Arbitrary File Upload Vulnerability in mojoPortal v2.7 Allows Remote Code Execution via Crafted PNG File

CVE-2022-40341 · HIGH Severity

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

mojoPortal v2.7 was discovered to contain an arbitrary file upload vulnerability which allows attackers to execute arbitrary code via a crafted PNG file.

Learn more about our Web Application Penetration Testing UK.