Security Advisory

CVE-2024-32254

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-04-16 00:00:00
Last updated 2024-11-06 14:50:03
Assigner mitre
State PUBLISHED

Description

Phpgurukul Tourism Management System v2.0 is vulnerable to Unrestricted Upload of File with Dangerous Type via tms/admin/create-package.php. When creating a new package, there is no checks for what types of files are uploaded from the image.