Security Advisory
CVE-2018-18752
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Webiness Inventory 2.3 suffers from an Arbitrary File upload vulnerability via PHP code in the protected/library/ajax/WsSaveToModel.php logo parameter.