A vulnerability classified as critical was found in OTCMS 6.0.1. Affected by this vulnerability is an unknown functionality of the file sysCheckFile.php?mudi=sql. The manipulation leads to unrestricted upload. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-224749 was assigned to this vulnerability.
Advisories
Source ID Title
EUVD EUVD EUVD-2023-24000 A vulnerability classified as critical was found in OTCMS 6.0.1. Affected by this vulnerability is an unknown functionality of the file sysCheckFile.php?mudi=sql. The manipulation leads to unrestricted upload. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-224749 was assigned to this vulnerability.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2024-08-02T06:05:26.160Z

Reserved: 2023-04-02T07:27:18.541Z

Link: CVE-2023-1797

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2023-04-02T10:15:06.947

Modified: 2024-11-21T07:39:55.473

Link: CVE-2023-1797

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses