CVE-2022-3492

Severity
8.8HIGH
EPSS
1.0%
top 22.87%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 13

Description

A vulnerability classified as critical was found in SourceCodester Human Resource Management System 1.0. This vulnerability affects unknown code of the component Profile Photo Handler. The manipulation of the argument parameter leads to os command injection. The attack can be initiated remotely. The identifier of this vulnerability is VDB-210772.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:LExploitability: 2.8 | Impact: 3.4

🔴Vulnerability Details

2
CVEList
SourceCodester Human Resource Management System Profile Photo os command injection2022-10-13
GHSA
GHSA-qfx3-p72w-gfwj: A vulnerability classified as critical was found in SourceCodester Human Resource Management System 12022-10-13
CVE-2022-3492 (HIGH CVSS 8.8) | A vulnerability classified as criti | cvebase.io