CVE-2022-40932: Malicious File Upload
In Zoo Management System v1.0, there is an arbitrary file upload vulnerability in the picture upload point of the "gallery" file of the "Gallery" module in the background management system.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-40932?
CVE-2022-40932 is an arbitrary file upload vulnerability in the picture upload point of the "gallery" file in the Zoo Management System v1.0.
What is the severity of CVE-2022-40932?
CVE-2022-40932 has a severity level of 7.2 (high).
How does CVE-2022-40932 affect the Zoo Management System v1.0?
CVE-2022-40932 allows an attacker to upload arbitrary files through the picture upload feature in the "gallery" module of the Zoo Management System v1.0.
What software versions are affected by CVE-2022-40932?
CVE-2022-40932 affects version 1.0 of the Zoo Management System.
Is there a fix available for CVE-2022-40932?
As of now, there is no known fix or patch available for CVE-2022-40932. It is recommended to apply mitigations provided by the vendor or consider alternative solutions.