CVE-2024-7813
SourceCodester Prison Management System Profile Image insufficiently protected credentials
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 6.9EPSS 0.8%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
15 Aug 2024Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A vulnerability, which was classified as problematic, has been found in SourceCodester Prison Management System 1.0. This issue affects some unknown processing of the file /uploadImage/Profile/ of the component Profile Image Handler. The manipulation leads to insufficiently protected credentials. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N
Affected products
SourceCodester · Prison Management SystemWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →