ZeroHour

CVE-2023-1722

PoC
CVSS 3.1
8.8 high
EPSS
<1%p30
Published
()
Modified
Description

Yoga Class Registration System version 1.0 allows an administrator to execute commands on the server. This is possible because the application does not correctly validate the thumbnails of the classes uploaded by the administrators.

Vendors
yoga class registration system project
Products
yoga class registration system
Weakness
CWE-352
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.