CVE-2023-45856

Publication date

2023-10-14 00:00:00

Family

mitre

State

PUBLISHED

Description

qdPM 9.2 allows remote code execution by using the Add Attachments feature of Edit Project to upload a .php file to the /uploads URI.