First published: Tue Aug 06 2024(Updated: )
A vulnerability, which was classified as critical, was found in itsourcecode Laravel Accounting System 1.0. This affects an unknown part of the file app/Http/Controllers/HomeController.php. The manipulation of the argument image leads to unrestricted upload. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-273621 was assigned to this vulnerability.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
itsourcecode Laravel Accounting System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-7495 is classified as a critical vulnerability.
CVE-2024-7495 affects itsourcecode Laravel Accounting System version 1.0.
CVE-2024-7495 is an unrestricted file upload vulnerability.
To fix CVE-2024-7495, restrict the file upload functionalities and validate file types before accepting uploads.
The impact of CVE-2024-7495 can allow an attacker to upload arbitrary files to the server.