A Remote Code Execution vulnerability exists in DourceCodester Alumni Management System 1.0. An authenticated attacker can upload arbitrary file in the gallery.php page and executing it on the server reaching the RCE.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2020-12-15T20:48:08
Updated: 2024-08-04T16:33:57.488Z
Reserved: 2020-11-02T00:00:00
Link: CVE-2020-28072
Vulnrichment
No data.
NVD
Status : Modified
Published: 2020-12-15T21:15:15.217
Modified: 2024-11-21T05:22:18.683
Link: CVE-2020-28072
Redhat
No data.