A vulnerability classified as critical has been found in itsourcecode Online Food Ordering System 1.0. Affected is an unknown function of the file editproduct.php. The manipulation of the argument photo leads to unrestricted upload. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-272610 is the identifier assigned to this vulnerability.
Metrics
Affected Vendors & Products
References
History
Fri, 23 Aug 2024 14:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Kevinwong
Kevinwong online Food Ordering System |
|
CPEs | cpe:2.3:a:kevinwong:online_food_ordering_system:1.0:*:*:*:*:*:*:* | |
Vendors & Products |
Kevinwong
Kevinwong online Food Ordering System |
MITRE
Status: PUBLISHED
Assigner: VulDB
Published: 2024-07-29T07:31:03.846Z
Updated: 2024-08-01T21:52:30.933Z
Reserved: 2024-07-28T07:12:54.519Z
Link: CVE-2024-7189
Vulnrichment
Updated: 2024-08-01T21:52:30.933Z
NVD
Status : Modified
Published: 2024-07-29T08:15:01.703
Modified: 2024-11-21T09:51:03.150
Link: CVE-2024-7189
Redhat
No data.