CVE-2017-15990
CRITICALSavsofteproducts Phpinventory - Unrestricted File Upload
Title source: ruleExploitation Summary
EIP tracks 1 public exploit for CVE-2017-15990. PoCs published by Ihsan Sencan.
AI-analyzed exploit summary The exploit describes an arbitrary file upload vulnerability in Php Inventory & Invoice Management System, allowing users to upload malicious files. The vulnerable code snippet shows improper handling of file uploads without proper validation or sanitization.
Description
Php Inventory & Invoice Management System allows Arbitrary File Upload via dashboard/edit_myaccountdetail/.
Exploits (1)
The exploit describes an arbitrary file upload vulnerability in Php Inventory & Invoice Management System, allowing users to upload malicious files. The vulnerable code snippet shows improper handling of file uploads without proper validation or sanitization.
References (1)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H