CVE-2023-4122
07.12.2023, 23:15
Student Information System v1.0 is vulnerable to an Insecure File Upload vulnerability on the 'photo' parameter of my-profile page, allowing an authenticated attacker to obtain Remote Code Execution on the server hosting the application.Enginsight
Vendor | Product | Version |
---|---|---|
imsurajghosh | student_information_system | 1.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration