Security Advisory

CVE-2022-25115

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-03-02 22:39:25
Last updated 2024-08-03 04:29:01
Assigner mitre
State PUBLISHED

Description

A remote code execution (RCE) vulnerability in the Avatar parameter under /admin/?page=user/manage_user of Home Owners Collection Management System v1.0 allows attackers to execute arbitrary code via a crafted PNG file.