CVE-2022-30887: Malicious File Upload
Pharmacy Management System v1.0 was discovered to contain a remote code execution (RCE) vulnerability via the component /phpaction/editProductImage.php. This vulnerability allows attackers to execute arbitrary code via a crafted image file.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-30887?
CVE-2022-30887 is a critical vulnerability in the Pharmacy Management System v1.0 that allows remote code execution (RCE) via a crafted image file.
How does CVE-2022-30887 affect Pharmacy Management System v1.0?
CVE-2022-30887 affects Pharmacy Management System v1.0 by allowing attackers to execute arbitrary code through the component /php_action/editProductImage.php.
What is the severity of CVE-2022-30887?
CVE-2022-30887 has a severity rating of critical (9.8).
How can I fix CVE-2022-30887?
To fix CVE-2022-30887, it is recommended to update Pharmacy Management System to a patched version or apply the necessary security patches provided by the vendor.
Where can I find more information about CVE-2022-30887?
You can find more information about CVE-2022-30887 at the following link: [Pharmacy-Management-System-1.0-Shell-Upload](https://packetstormsecurity.com/files/166786/Pharmacy-Management-System-1.0-Shell-Upload.html).