CVE-2022-2779: SourceCodester Gas Agency Management System oneWord.php unrestricted upload
A vulnerability classified as critical was found in SourceCodester Gas Agency Management System. Affected by this vulnerability is an unknown functionality of the file /gasmark/assets/myimages/oneWord.php. The manipulation of the argument shell leads to unrestricted upload. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-206173 was assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-2779?
The severity of CVE-2022-2779 is critical, with a severity value of 9.8.
What is the affected software of CVE-2022-2779?
The affected software of CVE-2022-2779 is Gas Agency Management System.
What is the vulnerability description of CVE-2022-2779?
CVE-2022-2779 is a critical vulnerability that allows for unrestricted file upload due to a manipulation of the 'shell' argument in the file /gasmark/assets/myimages/oneWord.php.
How can I fix CVE-2022-2779?
To fix CVE-2022-2779, it is recommended to apply the latest security patches or updates provided by the software vendor.