ZeroHour

CVE-2021-25780

PoC
CVSS 3.1
7.2 high
EPSS
3%p84
Published
()
Modified
Description

An arbitrary file upload vulnerability has been identified in posts.php in Baby Care System 1.0. The vulnerability could be exploited by an remote attacker to upload content to the server, including PHP files, which could result in command execution and obtaining a shell.

Vendors
janobe
Products
baby care system
Weakness
CWE-434
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.