Lucene search

K
osvGoogleOSV:GHSA-CR7J-RWMV-VGCH
HistoryJun 07, 2024 - 9:31 p.m.

aimeos-core arbitrary file uopload vulnerability

2024-06-0721:31:54
Google
osv.dev
1
arbitrary file upload
image upload function
execute arbitrary code
php file
software vulnerability

7.4 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

15.5%

An arbitrary file upload vulnerability in the image upload function of aimeos-core v2024.04 allows attackers to execute arbitrary code via uploading a crafted PHP file.

7.4 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

15.5%

Related for OSV:GHSA-CR7J-RWMV-VGCH