CVE-2020-28140

Severity CVSS v4.0:
Pending analysis
Type:
CWE-434 Unrestricted Upload of File with Dangerous Type
Publication date:
17/11/2020
Last modified:
23/11/2020

Description

SourceCodester Online Clothing Store 1.0 is affected by an arbitrary file upload via the image upload feature of Products.php.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:online_clothing_store_project:online_clothing_store:1.0:*:*:*:*:*:*:*