Security Advisory

CVE-2024-10420

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2024-10-27 15:31:04
Last updated 2024-10-28 13:23:48
Assigner VulDB
CVSS score 5.3
State PUBLISHED

Description

A vulnerability classified as critical has been found in SourceCodester Attendance and Payroll System 1.0. This affects the function upload of the file /marimar/guest/update.php. The manipulation of the argument image leads to unrestricted upload. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.