github.com
https://github.com/rskoolrash/Online-Admission-System CVE-2021-45835
CRITICAL
Online Admission System 1.0 - Remote Code Execution (RCE) (Unauthenticated)
Record summary
CVE-2021-45835 has a selected CVSS score of 9.8 (critical); EIP currently links 1 catalogued exploit.
Description
The Online Admission System 1.0 allows an unauthenticated attacker to upload or transfer files of dangerous types to the application through documents.php, which may be used to execute malicious code or lead to code execution.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBOnline Admission System 1.0 - Remote Code Execution (RCE) (Unauthenticated)ExploitDB exploitby Jeremiasz PlutaNot analyzed1 file
References
4github.com
https://github.com/rskoolrash/Online-Admission-System/issues/2 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2021-45835 exploit-db.com
https://www.exploit-db.com/exploits/50623