Nixon-H/PHP-Unrestricted-Upload-RCE

Nixon-H/PHP-Unrestricted-Upload-RCE

Releases0
Stars1
A Critical (CVSS 10.0) RCE vulnerability in a PHP e-commerce platform. The app trusts client-side MIME types and preserves extensions during upload. Attackers can bypass checks to upload web shells, gaining full system access (www-data). Includes PoC for bypassing validation via curl

Collections containing this project

Showing collections based on your access.

This project is not in any collections you can view.