Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-77883
HistoryMay 24, 2022 - 12:00 a.m.

Pharmacy Management System Remote Code Execution Vulnerability

2022-05-2400:00:00
China National Vulnerability Database
www.cnvd.org.cn
7
remote code execution
pharmacy management system
vulnerability
arbitrary code execution
cnvd

EPSS

0.016

Percentile

87.4%

A remote code execution vulnerability exists in Pharmacy Management System v1.0, which stems from the component /php_action/editProductImage.php failing to properly filter the construct snippet special element of the construction snippet. An attacker could exploit this vulnerability to cause arbitrary code execution.

EPSS

0.016

Percentile

87.4%

Related for CNVD-2022-77883