CVE-2020-24203
27.08.2020, 18:15
Insecure File Permissions and Arbitrary File Upload in the upload pic function in updatesubcategory.php in Projects World Travel Management System v1.0 allows remote unauthenticated attackers to gain remote code execution.
| Vendor | Product | Version |
|---|---|---|
| projectworlds | travel_management_system | 1.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References