First published: Sun Oct 20 2024(Updated: )
A vulnerability, which was classified as critical, was found in PHPGurukul Boat Booking System 1.0. This affects an unknown part of the file change-image.php of the component Update Boat Image Page. The manipulation of the argument image leads to unrestricted upload. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
PHPGurukul Boat Booking System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-10161 is classified as a critical vulnerability.
To fix CVE-2024-10161, ensure that proper validation and restrictions are implemented for the image upload functionality in change-image.php.
CVE-2024-10161 affects the Update Boat Image Page component in the PHPGurukul Boat Booking System.
CVE-2024-10161 is an unrestricted file upload vulnerability.
CVE-2024-10161 affects PHPGurukul Boat Booking System version 1.0.