CVE-2022-30821

HIGH

Wedding Management System v1.0 - File Upload

Title source: llm
STIX 2.1

Description

In Wedding Management System v1.0, the editing function of the "Services" module in the background management system has an arbitrary file upload vulnerability in the picture upload point of "package_edit.php" file.

Scores

CVSS v3 8.8
EPSS 0.0042
EPSS Percentile 62.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-434
Status published
Products (1)
wedding_management_system_project/wedding_management_system 1.0
Published Jun 02, 2022
Tracked Since Feb 18, 2026