ZeroHour

CVE-2020-10224

PoC
CVSS 3.1
9.8 critical
EPSS
5%p92
Published
()
Modified
Description

An unauthenticated file upload vulnerability has been identified in admin_add.php in PHPGurukul Online Book Store 1.0. The vulnerability could be exploited by an unauthenticated remote attacker to upload content to the server, including PHP files, which could result in command execution.

Vendors
phpgurukul
Products
online book store
Weakness
CWE-434
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.