First published: Fri Feb 23 2024(Updated: )
A vulnerability was found in CodeAstro Membership Management System 1.0. It has been classified as critical. This affects an unknown part of the component Add Members Tab. The manipulation of the argument Member Photo leads to unrestricted upload. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-254607.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
CodeAstro Membership Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-1819 has been classified as a critical vulnerability.
To fix CVE-2024-1819, restrict the file upload functionality for the Member Photo argument.
CVE-2024-1819 affects the Add Members Tab component of the CodeAstro Membership Management System.
CVE-2024-1819 can allow unrestricted file uploads, which may lead to further exploitation.
CVE-2024-1819 impacts version 1.0 of the CodeAstro Membership Management System.