NOSH 4a5cfdb - Authenticated Remote Code Execution via Practice Logo Upload
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2023-24610. PoCs published by abbisQQ.
AI-analyzed exploit summary This repository provides a functional proof-of-concept exploit for CVE-2023-24610, demonstrating a file upload vulnerability that bypasses front-end checks to achieve remote code execution via a polyglot PHP/PNG file. The exploit involves intercepting and modifying the file extension during upload to execute a reverse shell.
Description
NOSH 4a5cfdb allows remote authenticated users to execute PHP arbitrary code via the "practice logo" upload feature. The client-side checks can be bypassed. This may allow attackers to steal Protected Health Information because the product is for health charting.
Exploits (1)
This repository provides a functional proof-of-concept exploit for CVE-2023-24610, demonstrating a file upload vulnerability that bypasses front-end checks to achieve remote code execution via a polyglot PHP/PNG file. The exploit involves intercepting and modifying the file extension during upload to execute a reverse shell.
References (4)
Scores
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H