Arbitrary File Upload Vulnerability in Zoo Management System by Pushpam
CVE-2022-40924
7.2HIGH
What is CVE-2022-40924?
The Zoo Management System version 1.0 contains a vulnerability allowing arbitrary file uploads through the 'save_animal' feature within the Animals module of the backend management system. This flaw can potentially be exploited to upload malicious files, which may lead to remote code execution and compromise the system's integrity.