CVE-2022-40925: Malicious File Upload
Zoo Management System v1.0 has an arbitrary file upload vulnerability in the picture upload point of the "saveevent" file of the "Events" module in the background management system.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-40925?
CVE-2022-40925 is an arbitrary file upload vulnerability in the picture upload point of the "save_event" file of the "Events" module in Zoo Management System v1.0.
How does CVE-2022-40925 affect Zoo Management System v1.0?
CVE-2022-40925 allows an attacker to upload arbitrary files through the picture upload point in the "save_event" file of the "Events" module in Zoo Management System v1.0.
What is the severity of CVE-2022-40925?
CVE-2022-40925 has a severity rating of 7.2 (High).
How can I fix CVE-2022-40925 in Zoo Management System v1.0?
To fix CVE-2022-40925, apply the latest security patch or update provided by Zoo Management System Project for v1.0.
Where can I find more information about CVE-2022-40925?
You can find more information about CVE-2022-40925 at the following reference: [Link](https://github.com/admin77888/Bug_report/blob/main/vendors/pushpam02/zoo-management-system/RCE-2.md)