CVE-2024-4945
CVSS 2.0 Score 4.0 of 10 (medium)
Details
Published May 16, 2024
Updated: Jun 4, 2024
CWE ID 434
Summary
CVE-2024-4495: A critical vulnerability was identified in the SourceCodester Best Courier Management System 1.0. This issue, classified as problematic, affects an unspecified function in the file view_parcel.php. Attackers can exploit this flaw by manipulating the id argument, leading to unrestricted file uploads. The vulnerability can be exploited remotely, making it a significant threat. The exploit for this weakness has been made public, increasing the risk of attacks. This vulnerability is also known as VDB-264480.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Vendors
- Sourcecodester