Vulnerability Description
An arbitrary file upload vulnerability in the image upload function of Canteen Management System v1.0 allows attackers to execute arbitrary code via a crafted PHP file.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Canteen Management System Project | Canteen Management System | 1.0 |
Related Weaknesses (CWE)
References
- https://medium.com/%40syedmudassiruddinalvi/cve-2022-43146-rce-via-arbitrary-fil
- https://www.sourcecodester.com/php/15688/canteen-management-system-project-sourcProduct
- https://medium.com/%40syedmudassiruddinalvi/cve-2022-43146-rce-via-arbitrary-fil
- https://www.sourcecodester.com/php/15688/canteen-management-system-project-sourcProduct
FAQ
What is CVE-2022-43146?
CVE-2022-43146 is a vulnerability with a CVSS score of 7.2 (HIGH). An arbitrary file upload vulnerability in the image upload function of Canteen Management System v1.0 allows attackers to execute arbitrary code via a crafted PHP file.
How severe is CVE-2022-43146?
CVE-2022-43146 has been rated HIGH with a CVSS base score of 7.2/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-43146?
Check the references section above for vendor advisories and patch information. Affected products include: Canteen Management System Project Canteen Management System.