Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Kr0Ff

#29605of 53,630
8.8Total CVSS
Vulnerabilities · 1
PT-2026-4517
8.8
2026-01-23
Unknown · Phreebooks · CVE-2021-47904
**Name of the Vulnerable Software and Affected Versions** PhreeBooks version 5.2.3 **Description** PhreeBooks version 5.2.3 has a flaw in the Image Manager related to file uploads. An authenticated attacker can upload a malicious PHP web shell due to unrestricted file type uploads, potentially leading to remote code execution on the server. The vulnerable component is the Image Manager. The attack involves uploading a malicious PHP web shell. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.