ZeroHour

CVE-2023-1721

PoC
CVSS 3.1
7.2 high
EPSS
<1%p61
Published
()
Modified
Description

Yoga Class Registration System version 1.0 allows an administrator to execute commands on the server. This is possible because the application does not correctly validate the thumbnails of the classes uploaded by the administrators.

Vendors
yoga class registration system project
Products
yoga class registration system
Weakness
CWE-434
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.