A vulnerability classified as critical has been found in itsourcecode Online Discussion Forum 1.0. This affects an unknown part of the file change_profile_picture.php. The manipulation of the argument image leads to unrestricted upload. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-266589 was assigned to this vulnerability.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-46723 | A vulnerability classified as critical has been found in itsourcecode Online Discussion Forum 1.0. This affects an unknown part of the file change_profile_picture.php. The manipulation of the argument image leads to unrestricted upload. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-266589 was assigned to this vulnerability. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Mon, 14 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Tue, 11 Feb 2025 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Emiloimagtolis
Emiloimagtolis online Discussion Forum |
|
| CPEs | cpe:2.3:a:emiloimagtolis:online_discussion_forum:1.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Emiloimagtolis
Emiloimagtolis online Discussion Forum |
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2024-08-01T21:18:06.761Z
Reserved: 2024-05-30T06:19:08.808Z
Link: CVE-2024-5518
Updated: 2024-08-01T21:18:06.761Z
Status : Analyzed
Published: 2024-05-30T16:15:19.327
Modified: 2025-02-11T15:10:47.877
Link: CVE-2024-5518
No data.
OpenCVE Enrichment
No data.
EUVD