CVE-2022-41573 - Ovidentia Image Upload RCE Vulnerability
CVE ID : CVE-2022-41573 Published : Jan. 7, 2025, 8:15 p.m. | 59 minutes ago Description : An issue was discovered in Ovidentia 8.3. The file upload feature does not prevent the uploading of executable files. A user can upload a .png file containing PHP code and then rename it to have the .php extension. It will then be accessible at an images/common/ URI for remote code execution. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...
![CVE-2022-41573 - Ovidentia Image Upload RCE Vulnerability](https://cdn.cvefeed.io/images/cvefeed.io-new.webp)
Published : Jan. 7, 2025, 8:15 p.m. | 59 minutes ago
Description : An issue was discovered in Ovidentia 8.3. The file upload feature does not prevent the uploading of executable files. A user can upload a .png file containing PHP code and then rename it to have the .php extension. It will then be accessible at an images/common/ URI for remote code execution.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...