RPi-Jukebox-RFID v2.3.0 was discovered to contain a command injection vulnerability via the component /htdocs/utils/Files.php. This vulnerability is exploited via a crafted payload injected into the file name of an uploaded file.
CVSS
No CVSS.
References
Link | Resource |
---|---|
https://github.com/MiczFlor/RPi-Jukebox-RFID/issues/1859 |
Configurations
No configuration.
Information
Published : 2022-08-30 15:15
Updated : 2022-08-30 15:40
NVD link : CVE-2022-36749
Mitre link : CVE-2022-36749
JSON object : View
CWE
No CWE.
Products Affected
No product.