First published: Thu Sep 22 2022(Updated: )
In Zoo Management System v1.0, there is an arbitrary file upload vulnerability in the picture upload point of the "gallery" file of the "Gallery" module in the background management system.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Zoo Management System Project Zoo Management System | =1.0 | |
PHPGURUKUL Zoo Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-40932 is an arbitrary file upload vulnerability in the picture upload point of the "gallery" file in the Zoo Management System v1.0.
CVE-2022-40932 has a severity level of 7.2 (high).
CVE-2022-40932 allows an attacker to upload arbitrary files through the picture upload feature in the "gallery" module of the Zoo Management System v1.0.
CVE-2022-40932 affects version 1.0 of the Zoo Management System.
As of now, there is no known fix or patch available for CVE-2022-40932. It is recommended to apply mitigations provided by the vendor or consider alternative solutions.