First published: Fri Dec 29 2023(Updated: )
A vulnerability classified as critical was found in Campcodes Chic Beauty Salon 20230703. Affected by this vulnerability is an unknown functionality of the file product-list.php of the component Product Handler. The manipulation leads to unrestricted upload. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-249157 was assigned to this vulnerability.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
=20230703 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-7150 is classified as a critical vulnerability due to its potential for unrestricted file uploads.
To fix CVE-2023-7150, ensure that file upload functionality is restricted by implementing proper file type validation and access controls.
The impact of CVE-2023-7150 could allow an attacker to upload malicious files to the server, potentially leading to further exploitation.
CVE-2023-7150 affects Campcodes Chic Beauty Salon version 20230703.
CVE-2023-7150 involves an unknown functionality of the product-list.php file within the Product Handler component.