lohyt/web-shell-via-file-upload-in-hocms

lohyt/web-shell-via-file-upload-in-hocms

Releases0
Web shell via File upload functionality in Home owners collection management system

CVE History

CVEPublishedCVSS v3CVSS v2
9.8 CRITICAL7.5 HIGH

Home Owners Collection Management System v1.0 was discovered to contain an arbitrary file upload vulnerability via the component /student_attendance/index.php. This vulnerability allows attackers to execute arbitrary code via a crafted PHP file.