First published: Wed Oct 12 2022(Updated: )
A vulnerability has been found in SourceCodester Human Resource Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /employeeview.php of the component Image File Handler. The manipulation leads to unrestricted upload. The attack can be launched remotely. The associated identifier of this vulnerability is VDB-210559.
Credit: cna@vuldb.com cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Sourcecodester Human Resource Management System | =1.0 | |
Sourcecodester Human Resource Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-3458 is classified as a critical vulnerability.
CVE-2022-3458 affects the file /employeeview.php in the Image File Handler component, allowing unrestricted file uploads.
CVE-2022-3458 affects version 1.0 of the SourceCodester Human Resource Management System.
To fix CVE-2022-3458, ensure proper file upload constraints are implemented and validate file types.
As of now, check with the vendor for any available patches to address CVE-2022-3458.