Unrestricted Upload of File with Dangerous Type vulnerability in "Rental Module" developed by third-party for Ideasoft's E-commerce Platform allows Command Injection, Using Malicious Files, Upload a Web Shell to a Web Server.This issue affects Rental Module: before 23.05.15.
References
| Link | Resource |
|---|---|
| https://www.usom.gov.tr/bildirim/tr-23-0276 | Third Party Advisory |
Configurations
History
26 May 2023, 01:13
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Rental Module Project rental Module
Rental Module Project |
|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
| CPE | cpe:2.3:a:rental_module_project:rental_module:*:*:*:*:*:*:*:* | |
| References | (MISC) https://www.usom.gov.tr/bildirim/tr-23-0276 - Third Party Advisory |
20 May 2023, 11:31
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2023-05-20 10:15
Updated : 2023-08-02 17:15
NVD link : CVE-2023-2712
Mitre link : CVE-2023-2712
JSON object : View
Products Affected
rental_module_project
- rental_module
CWE
CWE-434
Unrestricted Upload of File with Dangerous Type
