A vulnerability, which was classified as critical, was found in SourceCodester Facebook News Feed Like 1.0. Affected is an unknown function of the component Post Handler. The manipulation leads to unrestricted upload. It is possible to launch the attack remotely. The identifier of this vulnerability is VDB-252300.
References
Link | Resource |
---|---|
https://vuldb.com/?ctiid.252300 | Permissions Required Third Party Advisory |
https://vuldb.com/?id.252300 | Third Party Advisory |
https://vuldb.com/?ctiid.252300 | Permissions Required Third Party Advisory |
https://vuldb.com/?id.252300 | Third Party Advisory |
Configurations
History
21 Nov 2024, 08:49
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : 6.5
v3 : 6.3 |
References | () https://vuldb.com/?ctiid.252300 - Permissions Required, Third Party Advisory | |
References | () https://vuldb.com/?id.252300 - Third Party Advisory |
05 Feb 2024, 19:27
Type | Values Removed | Values Added |
---|---|---|
First Time |
Oretnom23 facebook News Feed Like
Oretnom23 |
|
References | () https://vuldb.com/?ctiid.252300 - Permissions Required, Third Party Advisory | |
References | () https://vuldb.com/?id.252300 - Third Party Advisory | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
CPE | cpe:2.3:a:oretnom23:facebook_news_feed_like:1.0:*:*:*:*:*:*:* |
30 Jan 2024, 03:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-01-30 03:15
Updated : 2024-11-21 08:49
NVD link : CVE-2024-1027
Mitre link : CVE-2024-1027
CVE.ORG link : CVE-2024-1027
JSON object : View
Products Affected
oretnom23
- facebook_news_feed_like
CWE
CWE-434
Unrestricted Upload of File with Dangerous Type