Unrestricted File Upload Vulnerability in CleverStupidDog yf-exam 1.8.0
CVE-2023-25402 · HIGH Severity
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
CleverStupidDog yf-exam 1.8.0 is vulnerable to File Upload. There is no restriction on the suffix of the uploaded file, resulting in any file upload.
Learn more about our Web Application Penetration Testing UK.