A Remote Code Execution vulnerability exists in DourceCodester Alumni Management System 1.0. An authenticated attacker can upload arbitrary file in the gallery.php page and executing it on the server reaching the RCE.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2020-12-15T20:48:08

Updated: 2024-08-04T16:33:57.488Z

Reserved: 2020-11-02T00:00:00

Link: CVE-2020-28072

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2020-12-15T21:15:15.217

Modified: 2020-12-17T20:52:41.077

Link: CVE-2020-28072

cve-icon Redhat

No data.