CVE-2024-10999: CodeAstro Real Estate Management System About Us Page aboutadd.php unrestricted upload
A vulnerability classified as problematic has been found in CodeAstro Real Estate Management System 1.0. Affected is an unknown function of the file /aboutadd.php of the component About Us Page. The manipulation of the argument aimage leads to unrestricted upload. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-10999?
CVE-2024-10999 is classified as problematic.
How do I fix CVE-2024-10999?
To fix CVE-2024-10999, ensure that input validation is implemented for the aimage parameter to prevent unrestricted file uploads.
Which versions of CodeAstro Real Estate Management System are affected by CVE-2024-10999?
CVE-2024-10999 affects version 1.0 of the CodeAstro Real Estate Management System.
What type of vulnerability is CVE-2024-10999?
CVE-2024-10999 is a file upload vulnerability that allows unrestricted uploads via the /aboutadd.php file.
Who is the vendor for the affected software in CVE-2024-10999?
The vendor for the affected software in CVE-2024-10999 is Surajkumarvishwakarma.