A vulnerability classified as critical has been found in itsourcecode Online Food Ordering System 1.0. Affected is an unknown function of the file editproduct.php. The manipulation of the argument photo leads to unrestricted upload. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-272610 is the identifier assigned to this vulnerability.
History

Fri, 23 Aug 2024 14:45:00 +0000

Type Values Removed Values Added
First Time appeared Kevinwong
Kevinwong online Food Ordering System
CPEs cpe:2.3:a:kevinwong:online_food_ordering_system:1.0:*:*:*:*:*:*:*
Vendors & Products Kevinwong
Kevinwong online Food Ordering System

cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published: 2024-07-29T07:31:03.846Z

Updated: 2024-08-01T21:52:30.933Z

Reserved: 2024-07-28T07:12:54.519Z

Link: CVE-2024-7189

cve-icon Vulnrichment

Updated: 2024-08-01T21:52:30.933Z

cve-icon NVD

Status : Analyzed

Published: 2024-07-29T08:15:01.703

Modified: 2024-08-23T14:20:26.690

Link: CVE-2024-7189

cve-icon Redhat

No data.