mega.nzexploit
https://mega.nz/file/HNkn2QbI CVE-2024-0348
MEDIUM
SourceCodester Engineers Online Portal File Upload resource consumption
Record summary
CVE-2024-0348 has a selected CVSS score of 4.3 (medium).
Description
A vulnerability was found in SourceCodester Engineers Online Portal 1.0. It has been classified as problematic. Affected is an unknown function of the component File Upload Handler. The manipulation leads to resource consumption. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-250116.
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationPoC
AutomatableNo
Technical impactPartial
CISA Coordinator · SSVC 2.0.3 · Evaluated Jan 10, 2024 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
Engineers Online PortalBrowse SourceCodester / Engineers Online Portal | CVE List | 1.0 | affected |
References
4nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2024-0348 vuldb.comsignaturepermissions required
https://vuldb.com/?ctiid.250116 vuldb.comvdb entry
https://vuldb.com/?id.250116