vendor:
Online Piggery Management System
by:
1337kid
9.8
CVSS
CRITICAL
Unauthenticated File Upload
CWE
Product Name: Online Piggery Management System
Affected Version From: 1
Affected Version To: 1
Patch Exists: NO
Related CWE: CVE-2023-37629
CPE:
Platforms Tested: Ubuntu
2023
Online Piggery Management System v1.0 โ unauthenticated file upload vulnerability
This exploit allows an attacker to upload a malicious shell.php file to the target system using the Online Piggery Management System v1.0. By exploiting this vulnerability, an attacker can execute arbitrary commands on the target system.
Mitigation:
The vendor should release a patch to fix this vulnerability. In the meantime, users of the Online Piggery Management System v1.0 should be cautious and ensure that the application is not accessible to untrusted users.