CVE-2024-8170: SourceCodester Zipped Folder Manager App add-folder.php unrestricted upload
A vulnerability classified as problematic has been found in SourceCodester Zipped Folder Manager App 1.0. This affects an unknown part of the file /endpoint/add-folder.php. The manipulation of the argument folder leads to unrestricted upload. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-8170?
CVE-2024-8170 is classified as a problematic vulnerability affecting the SourceCodester Zipped Folder Manager App 1.0.
How do I fix CVE-2024-8170?
To fix CVE-2024-8170, ensure that folder uploads are properly validated and restricted to prevent unauthorized file uploads.
What impact does CVE-2024-8170 have on the system?
CVE-2024-8170 allows for unrestricted file uploads, which could lead to malicious file execution or system compromise.
Which version of the Zipped Folder Manager App is affected by CVE-2024-8170?
CVE-2024-8170 affects version 1.0 of the Rems Zipped Folder Manager App.
Where in the application is CVE-2024-8170 located?
CVE-2024-8170 is located in the /endpoint/add-folder.php file.