CVE-2023-1956: SourceCodester Online Computer and Laptop Store Image path traversal
A vulnerability classified as critical was found in SourceCodester Online Computer and Laptop Store 1.0. Affected by this vulnerability is an unknown functionality of the file /classes/Master.php?f=deleteimg of the component Image Handler. The manipulation of the argument path leads to path traversal. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-225343.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-1956?
The severity of CVE-2023-1956 is classified as high with a severity value of 8.8.
Which component of SourceCodester Online Computer and Laptop Store 1.0 is affected by CVE-2023-1956?
The component affected by CVE-2023-1956 is the Image Handler, specifically the file /classes/Master.php?f=delete_img.
What is the vulnerability type described in CVE-2023-1956?
CVE-2023-1956 is a path traversal vulnerability.
Is there a fix available for CVE-2023-1956?
Currently, there is no information available about a fix for CVE-2023-1956. It is recommended to follow the provided references for any updates or patch releases.
What is the Common Weakness Enumeration (CWE) ID for CVE-2023-1956?
The Common Weakness Enumeration (CWE) ID for CVE-2023-1956 is CWE-22.