CVE-2022-40932

HIGH

Zoo Management System v1.0 - File Upload

Title source: llm
STIX 2.1

Description

In Zoo Management System v1.0, there is an arbitrary file upload vulnerability in the picture upload point of the "gallery" file of the "Gallery" module in the background management system.

References (1)

Core 1

Scores

CVSS v3 7.2
EPSS 0.0045
EPSS Percentile 63.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact total

Details

CWE
CWE-434
Status published
Products (1)
phpgurukul/zoo_management_system 1.0
Published Sep 22, 2022
Tracked Since Feb 18, 2026