SourceCodester Facebook News Feed Like Post unrestricted upload
CVE-2024-1027

9.8CRITICAL

Key Information:

Vendor
CVE Published:
30 January 2024

Summary

A vulnerability in the Post Handler component of SourceCodester's Facebook News Feed Like version 1.0 allows for unrestricted file uploads, posing significant security risks. Attackers can exploit this flaw remotely, potentially leading to unauthorized file execution and server compromise. This vulnerability highlights the critical need for robust input validation and secure file handling practices to mitigate potential threats.

Affected Version(s)

Facebook News Feed Like 1.0

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

thesorcererkingainz (VulDB User)
.