File Upload vulnerability in Nanjin Xingyuantu Technology Co Sparkshop (Spark Mall B2C Mall v.1.1.6 and before allows a remote attacker to execute arbitrary code via the contorller/common.php component.
References
Configurations
No configuration.
History
No history.
Information
Published : 2024-07-16 18:15
Updated : 2024-11-21 09:31
NVD link : CVE-2024-40425
Mitre link : CVE-2024-40425
CVE.ORG link : CVE-2024-40425
JSON object : View
Products Affected
No product.
CWE
CWE-434
Unrestricted Upload of File with Dangerous Type