Metrics
Affected Vendors & Products
Thu, 14 Nov 2024 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Sourcecodester
Sourcecodester best Employee Management System |
|
CPEs | cpe:2.3:a:sourcecodester:best_employee_management_system:*:*:*:*:*:*:*:* | |
Vendors & Products |
Sourcecodester
Sourcecodester best Employee Management System |
|
Metrics |
ssvc
|
Thu, 14 Nov 2024 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability has been found in SourceCodester Best Employee Management System 1.0 and classified as critical. This vulnerability affects unknown code of the file /admin/profile.php. The manipulation of the argument website_image leads to unrestricted upload. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The initial researcher disclosure contains confusing vulnerability classes. | |
Title | SourceCodester Best Employee Management System profile.php unrestricted upload | |
Weaknesses | CWE-284 CWE-434 |
|
References |
| |
Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2024-11-14T16:00:15.245Z
Updated: 2024-11-14T17:04:42.105Z
Reserved: 2024-11-14T08:09:15.594Z
Link: CVE-2024-11214
Updated: 2024-11-14T17:04:36.617Z
Status : Received
Published: 2024-11-14T16:15:18.707
Modified: 2024-11-14T16:15:18.707
Link: CVE-2024-11214
No data.