Unauthenticated File Upload Vulnerability in Seat Reservation System by PacketStorm Security
CVE-2020-25763
9.8CRITICAL
Key Information:
- Status
- Vendor
- CVE Published:
- 30 September 2020
What is CVE-2020-25763?
The Seat Reservation System version 1.0 is vulnerable to an unauthenticated file upload flaw that enables remote attackers to upload malicious PHP files. This exploitation can lead to remote code execution on the hosting server, compromising the integrity and availability of the web application. Security measures should be implemented to sanitize file uploads and restrict file types to mitigate this vulnerability.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
References
EPSS Score
12% chance of being exploited in the next 30 days.
CVSS V3.1
Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
