Unrestricted Upload Vulnerability in SourceCodester Young Entrepreneur E-Negosyo System 1.0 (VDB-224622)

Unrestricted Upload Vulnerability in SourceCodester Young Entrepreneur E-Negosyo System 1.0 (VDB-224622)

CVE-2023-1734 · CRITICAL Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

A vulnerability classified as critical has been found in SourceCodester Young Entrepreneur E-Negosyo System 1.0. Affected is an unknown function of the file admin/products/controller.php?action=add. The manipulation of the argument image leads to unrestricted upload. It is possible to launch the attack remotely. VDB-224622 is the identifier assigned to this vulnerability.

Learn more about our Web Application Penetration Testing UK.