1 results (0.001 seconds)
CVSS: 8.8EPSS: 0%CPEs: 1EXPL: 2
CVE-2022-28062
https://notcve.org/view.php?id=CVE-2022-28062
Car Rental System v1.0 contains an arbitrary file upload vulnerability via the Add Car component which allows attackers to upload a webshell and execute arbitrary code. Car Rental System versión v1.0, contiene una vulnerabilidad de carga de archivos arbitraria por medio del componente Add Car que permite a atacantes cargar un webshell y ejecutar código arbitrario • https://github.com/D4rkP0w4r/CVEs/blob/main/Car%20Rental%20System%20Upload%20%2B%20RCE/POC.md https://hackmd.io/DUiTnVpLSVKihcyPloLdPg • CWE-434: Unrestricted Upload of File with Dangerous Type •