PT-2022-22882 · Unknown · Boxbilling

Published

2022-10-17

·

Updated

2023-03-28

·

CVE-2022-3552

CVSS v3.1

7.2

High

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions boxbilling/boxbilling version prior to 0.0.1
Description The issue concerns an unrestricted upload of a file with a dangerous type. This problem is related to the GitHub repository boxbilling/boxbilling.
Recommendations For versions prior to 0.0.1, update to version 0.0.1 or later to resolve the issue.

Exploit

Fix

Unrestricted File Upload

Weakness Enumeration

Related Identifiers

CVE-2022-3552

Affected Products

Boxbilling