Gym Management System Project v1.0 is vulnerable to
an Insecure File Upload vulnerability on the 'file'
parameter of profile/i.php page, allowing an
authenticated attacker to obtain Remote Code Execution
on the server hosting the application.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: Fluid Attacks
Published: 2023-09-28T20:52:35.938Z
Updated: 2024-08-02T07:52:07.802Z
Reserved: 2023-09-25T22:29:10.371Z
Link: CVE-2023-5185
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2023-09-28T21:15:10.507
Modified: 2023-09-29T18:54:59.730
Link: CVE-2023-5185
Redhat
No data.