jinhaochan/CVE-POC

jinhaochan/CVE-POC

GitHubGitHub
Unavailable
This project is no longer available (or publicly accessible) from GitHub
Releases0
POCs of CVEs

CVE History

CVEPublishedCVSS v3CVSS v2
8.1 HIGH

Phpgurukul Tourism Management System v2.0 is vulnerable to Unrestricted Upload of File with Dangerous Type via /tms/admin/change-image.php. When updating a current package, there are no checks for what types of files are uploaded from the image.

8.8 HIGH

Phpgurukul Tourism Management System v2.0 is vulnerable to Unrestricted Upload of File with Dangerous Type via tms/admin/create-package.php. When creating a new package, there is no checks for what types of files are uploaded from the image.