A vulnerability was found in SourceCodester Prison Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /Admin/add-admin.php of the component Avatar Handler. The manipulation of the argument avatar leads to unrestricted upload. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-259631.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: VulDB
Published: 2024-04-08T00:00:05.558Z
Updated: 2024-08-21T22:24:01.651Z
Reserved: 2024-04-07T13:13:50.862Z
Link: CVE-2024-3437
Vulnrichment
Updated: 2024-08-01T20:12:07.197Z
NVD
Status : Awaiting Analysis
Published: 2024-04-08T00:15:08.537
Modified: 2024-05-18T05:15:46.150
Link: CVE-2024-3437
Redhat
No data.