SourceCodester Best POS Management System Image save_settings unrestricted upload
Vulnerability Description
A vulnerability, which was classified as problematic, has been found in SourceCodester Best POS Management System 1.0. This issue affects the function save_settings of the file index.php?page=site_settings of the component Image Handler. The manipulation of the argument img with the input ../../shell.php leads to unrestricted upload. The attack may be initiated remotely. The associated identifier of this vulnerability is VDB-221591.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-0943
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- mroz1l (VulDB User)
More from SourceCodester
View All →Affected Vendor
SourceCodester
View all reports →