First published: Sat Mar 23 2024(Updated: )
A vulnerability classified as critical was found in SourceCodester Simple File Manager 1.0. This vulnerability affects unknown code. The manipulation of the argument photo leads to unrestricted upload. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-257770 is the identifier assigned to this vulnerability.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Simple-file-manager | ||
Simple File Manager | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-2849 is classified as a critical vulnerability.
CVE-2024-2849 allows an attacker to perform an unrestricted file upload by manipulating the photo argument.
CVE-2024-2849 affects users of SourceCodester Simple File Manager version 1.0.
The impact of CVE-2024-2849 includes the possibility of remote code execution due to unauthorized file uploads.
To fix CVE-2024-2849, update the Simple File Manager to the latest version or apply security patches as provided by the vendor.