CVE Published: 27/06/2022 |
CVE Updated: 03/08/2024 |
CVE Year: 2022 Source: VulDB |
Vendor: SourceCodester |
Product: Library Management System Status : PUBLISHED
CVE-2022-2212 Description
A vulnerability was found in SourceCodester Library Management System 1.0. It has been classified as critical. Affected is an unknown function of the component /card/index.php. The manipulation of the argument image leads to unrestricted upload. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Metrics
CVSS Version: 3.1 |
Base Score: 6.3 MEDIUM Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L