CVE-2022-36749
30.08.2022, 22:15
RPi-Jukebox-RFID v2.3.0 was discovered to contain a command injection vulnerability via the component /htdocs/utils/Files.php. This vulnerability is exploited via a crafted payload injected into the file name of an uploaded file.
Vendor | Product | Version |
---|---|---|
sourcefabric | rpi-jukebox-rfid | 2.3.0 |
𝑥
= Vulnerable software versions