A vulnerability has been found in itsourcecode Pool of Bethesda Online Reservation System up to 1.0 and classified as critical. Affected by this vulnerability is the function uploadImage of the file /admin/mod_room/controller.php?action=add. The manipulation of the argument image leads to unrestricted upload. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-268825 was assigned to this vulnerability.
Metrics
Affected Vendors & Products
References
History
Thu, 08 Aug 2024 16:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Janobe
Janobe pool Of Bethesda Online Reservation System |
|
CPEs | cpe:2.3:a:janobe:pool_of_bethesda_online_reservation_system:1.0:*:*:*:*:*:*:* | |
Vendors & Products |
Janobe
Janobe pool Of Bethesda Online Reservation System |
MITRE
Status: PUBLISHED
Assigner: VulDB
Published: 2024-06-18T00:31:04.309Z
Updated: 2024-08-01T21:25:03.269Z
Reserved: 2024-06-17T17:23:09.335Z
Link: CVE-2024-6084
Vulnrichment
Updated: 2024-08-01T21:25:03.269Z
NVD
Status : Modified
Published: 2024-06-18T01:15:20.333
Modified: 2024-11-21T09:48:55.760
Link: CVE-2024-6084
Redhat
No data.