An arbitrary file write vulnerability in Serenissima Informatica Fast Checkin v1.0 allows unauthenticated attackers to upload malicious files in the web root of the application to gain access to the server via the web shell.
References
Link | Resource |
---|---|
http://serenissima.com | Broken Link |
https://www.swascan.com/it/security-advisory-serenissima-informatica-fastcheckin/ | Exploit Third Party Advisory |
http://serenissima.com | Broken Link |
https://www.swascan.com/it/security-advisory-serenissima-informatica-fastcheckin/ | Exploit Third Party Advisory |
Configurations
History
21 Nov 2024, 07:32
Type | Values Removed | Values Added |
---|---|---|
References | () http://serenissima.com - Broken Link | |
References | () https://www.swascan.com/it/security-advisory-serenissima-informatica-fastcheckin/ - Exploit, Third Party Advisory |
Information
Published : 2023-02-01 02:15
Updated : 2024-11-21 07:32
NVD link : CVE-2022-47769
Mitre link : CVE-2022-47769
CVE.ORG link : CVE-2022-47769
JSON object : View
Products Affected
serinf
- fast_checkin
CWE
CWE-434
Unrestricted Upload of File with Dangerous Type