Marital - Online Matrimonial Project In PHP version 1.0 suffers from an authenticated file upload vulnerability allowing remote attackers to gain remote code execution (RCE) on the Hosting web server via uploading a maliciously crafted PHP file.
References
Link | Resource |
---|---|
https://packetstormsecurity.com/files/160337/Online-Matrimonial-Project-1.0-Remote-Code-Execution.html | Exploit Third Party Advisory VDB Entry |
Configurations
Information
Published : 2020-12-23 10:15
Updated : 2020-12-23 11:46
NVD link : CVE-2020-27397
Mitre link : CVE-2020-27397
JSON object : View
CWE
CWE-434
Unrestricted Upload of File with Dangerous Type
Products Affected
projectworlds
- online_matrimonial_project