PT-2020-16879 · Sourcecodester · Sourcecodester Car Rental Management System

Published

2020-10-28

·

Updated

2020-11-03

·

CVE-2020-27956

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions SourceCodester Car Rental Management System version 1.0
Description The issue allows remote code execution due to an arbitrary file upload vulnerability in the Upload Image component. This is possible because .php files can be uploaded to the admin/assets/uploads/ directory, which is under the web root, via the admin/index.php?page=manage car endpoint.
Recommendations For SourceCodester Car Rental Management System version 1.0, consider restricting access to the Upload Image component to prevent arbitrary file uploads until a patch is available. As a temporary workaround, restrict write access to the admin/assets/uploads/ directory to minimize the risk of exploitation.

Exploit

Fix

Unrestricted File Upload

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-27956

Affected Products

Sourcecodester Car Rental Management System