CVE-2024-4820
CVSS 3.1 Score 6.3 of 10 (medium)
Details
Summary
CVE-2024-4820 is a newly disclosed critical vulnerability affecting the SourceCodester Online Computer and Laptop Store version 1.0. The issue lies within an unknown functionality of the file /classes/SystemSettings.php?f=update_settings. An attacker can exploit this vulnerability for unrestricted file uploads, which can lead to significant security risks. This exploit can be launched remotely, making it a serious threat. The vulnerability has been made public, increasing the risk of widespread exploitation. The Vulnerability Database has assigned the identifier VDB-263941 to this issue.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.