PT-2022-19406 · Unknown · Sourcecodester Simple/Nice Shopping Cart Script

Qidian

·

Published

2022-08-20

·

Updated

2022-08-23

·

CVE-2022-2909

CVSS v3.1

6.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions SourceCodester Simple and Nice Shopping Cart Script (affected versions not specified)
Description A critical vulnerability was found in the SourceCodester Simple and Nice Shopping Cart Script, affecting an unknown functionality of the file /mkshop/Men/profile.php. This vulnerability leads to unrestricted upload and can be exploited remotely. The exploit has been disclosed to the public.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Unrestricted File Upload

Weakness Enumeration

Related Identifiers

CVE-2022-2909

Affected Products

Sourcecodester Simple/Nice Shopping Cart Script