An unrestricted file upload at /public/admin/index.php?add_product of Ecommerce-Website v1.1.0 allows attackers to upload a webshell via the Product Image component.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published: 2022-04-04T13:17:59
Updated: 2024-08-03T05:25:32.671Z
Reserved: 2022-03-21T00:00:00
Link: CVE-2022-27435

No data.

Status : Modified
Published: 2022-04-04T14:15:07.657
Modified: 2024-11-21T06:55:43.857
Link: CVE-2022-27435

No data.