CVE-2024-10161: PHPGurukul Boat Booking System Update Boat Image Page change-image.php unrestricted upload
A vulnerability, which was classified as critical, was found in PHPGurukul Boat Booking System 1.0. This affects an unknown part of the file change-image.php of the component Update Boat Image Page. The manipulation of the argument image leads to unrestricted upload. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-10161?
CVE-2024-10161 is classified as a critical vulnerability.
How do I fix CVE-2024-10161?
To fix CVE-2024-10161, ensure that proper validation and restrictions are implemented for the image upload functionality in change-image.php.
What component of the PHPGurukul Boat Booking System is affected by CVE-2024-10161?
CVE-2024-10161 affects the Update Boat Image Page component in the PHPGurukul Boat Booking System.
What type of vulnerability is CVE-2024-10161?
CVE-2024-10161 is an unrestricted file upload vulnerability.
Which version of PHPGurukul Boat Booking System is impacted by CVE-2024-10161?
CVE-2024-10161 affects PHPGurukul Boat Booking System version 1.0.