CVE-2023-30247: Malicious File Upload
File Upload vulnerability found in Oretnom23 Storage Unit Rental Management System v.1.0 allows a remote attacker to execute arbitrary code via the updatesettings parameter.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-30247?
CVE-2023-30247 is a file upload vulnerability found in Oretnom23 Storage Unit Rental Management System v.1.0 that allows a remote attacker to execute arbitrary code via the update_settings parameter.
How severe is CVE-2023-30247?
CVE-2023-30247 has a severity keyword of 'critical' and a severity value of 9.8.
How can an attacker exploit CVE-2023-30247?
An attacker can exploit CVE-2023-30247 by leveraging the file upload vulnerability in the Oretnom23 Storage Unit Rental Management System v.1.0 and using the update_settings parameter to execute arbitrary code remotely.
What is the affected software?
The affected software is the Oretnom23 Storage Unit Rental Management System v.1.0.
Is there a fix for CVE-2023-30247?
Yes, a fix for CVE-2023-30247 may be available from the vendor of the Oretnom23 Storage Unit Rental Management System. It is recommended to update to the latest version or apply any patches provided by the vendor.