Arbitrary File Deletion in Attendance Management System by SourceCodester
CVE-2021-45348
7.5HIGH
Key Information:
- Vendor
- CVE Published:
- 14 February 2022
What is CVE-2021-45348?
An Arbitrary File Deletion vulnerability found in SourceCodester's Attendance Management System v1.0 allows attackers to exploit the csv parameter in admin/pageUploadCSV.php. This exploitation can lead to unauthorized file deletions, potentially causing a complete Denial of Service by crashing the application.
