CVE-2022-31854: Malicious File Upload
Codoforum v5.1 was discovered to contain an arbitrary file upload vulnerability via the logo change option in the admin panel.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-31854?
CVE-2022-31854 is an arbitrary file upload vulnerability discovered in Codoforum version 5.1.
How severe is CVE-2022-31854?
CVE-2022-31854 has a severity rating of 7.2, which is considered high.
How does CVE-2022-31854 affect Codoforum?
CVE-2022-31854 allows attackers to upload arbitrary files through the logo change option in the Codoforum admin panel.
Is there a fix for CVE-2022-31854?
To fix CVE-2022-31854, it is recommended to update Codoforum to a version that includes the necessary security patches.
Where can I find more information about CVE-2022-31854?
More information about CVE-2022-31854 can be found at the following references: http://packetstormsecurity.com/files/167782/CodoForum-5.1-Remote-Code-Execution.html, https://codoforum.com, https://github.com/Vikaran101/CVE-2022-31854/blob/main/exploit.py