CVE-2021-45835 Information
Jun 07, 2022
cve
Description
The Online Admission System 1.0 allows an unauthenticated attacker to upload or transfer files of dangerous types to the application through documents.php which may be used to execute malicious code or lead to code execution.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Reference
https://www.exploit-db.com/exploits/50623 https://github.com/rskoolrash/Online-Admission-System https://github.com/rskoolrash/Online-Admission-System/issues/2
Attack Complexity
LOW
Privileges Required
NONE
User Interaction Required
NONE
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
HIGH
Availability Impact
HIGH
Base Score
HIGH
Base Severity
9.8
Share on: