Unrestricted Upload of File with Dangerous Type in GitHub repository boxbilling/boxbilling prior to 0.0.1.
References
Link | Resource |
---|---|
http://packetstormsecurity.com/files/171542/BoxBilling-4.22.1.5-Remote-Code-Execution.html | |
https://github.com/boxbilling/boxbilling/commit/b6705995785eaa8653e876318c9b3d82060dc945 | Third Party Advisory |
https://huntr.dev/bounties/c6e2973d-386d-4667-9426-10d10828539b | Exploit Patch Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: @huntrdev
Published: 2022-10-17T00:00:00
Updated: 2023-03-28T00:00:00
Reserved: 2022-10-17T00:00:00
Link: CVE-2022-3552
JSON object: View
NVD Information
Status : Modified
Published: 2022-10-17T21:15:10.573
Modified: 2023-03-28T17:15:11.903
Link: CVE-2022-3552
JSON object: View
Redhat Information
No data.
CWE