Unrestricted Upload of File with Dangerous Type vulnerability in "Rental Module" developed by third-party for Ideasoft's E-commerce Platform allows Command Injection, Using Malicious Files, Upload a Web Shell to a Web Server.This issue affects Rental Module: before 23.05.15.
References
Link Resource
https://www.usom.gov.tr/bildirim/tr-23-0276 Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: TR-CERT

Published: 2023-05-20T09:49:53.583Z

Updated: 2023-07-26T09:04:37.601Z

Reserved: 2023-05-15T13:58:02.132Z


Link: CVE-2023-2712

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-05-20T10:15:09.203

Modified: 2023-08-02T17:15:36.950


Link: CVE-2023-2712

JSON object: View

cve-icon Redhat Information

No data.

CWE