CVE-2023-7150: Campcodes Chic Beauty Salon Product product-list.php unrestricted upload
A vulnerability classified as critical was found in Campcodes Chic Beauty Salon 20230703. Affected by this vulnerability is an unknown functionality of the file product-list.php of the component Product Handler. The manipulation leads to unrestricted upload. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-249157 was assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-7150?
CVE-2023-7150 is classified as a critical vulnerability due to its potential for unrestricted file uploads.
How do I fix CVE-2023-7150?
To fix CVE-2023-7150, ensure that file upload functionality is restricted by implementing proper file type validation and access controls.
What is the impact of CVE-2023-7150?
The impact of CVE-2023-7150 could allow an attacker to upload malicious files to the server, potentially leading to further exploitation.
Which software versions are affected by CVE-2023-7150?
CVE-2023-7150 affects Campcodes Chic Beauty Salon version 20230703.
What component is involved in CVE-2023-7150?
CVE-2023-7150 involves an unknown functionality of the product-list.php file within the Product Handler component.