nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2020-10224 CVE-2020-10224
CRITICAL
Online Book Store 1.0 - Unauthenticated Remote Code Execution
Record summary
CVE-2020-10224 has a selected CVSS score of 9.8 (critical); EIP currently links 1 catalogued exploit.
Description
An unauthenticated file upload vulnerability has been identified in admin_add.php in PHPGurukul Online Book Store 1.0. The vulnerability could be exploited by an unauthenticated remote attacker to upload content to the server, including PHP files, which could result in command execution.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBOnline Book Store 1.0 - Unauthenticated Remote Code ExecutionExploitDB exploitby Tib3riusNot analyzed1 file
References
3tib3rius.com
https://tib3rius.com/cves.html exploit-db.com
https://www.exploit-db.com/exploits/47887