Unrestricted File Upload Vulnerability in ZeroWdd Student Manager Software
CVE-2024-13134
What is CVE-2024-13134?
A significant vulnerability exists in the ZeroWdd Student Manager software, specifically within the addTeacher/editTeacher functions of the TeacherController.java file. This flaw allows for unrestricted file uploads due to improper handling of input arguments. As a result, attackers can exploit this vulnerability remotely, posing severe security risks to the affected systems. The exploit has already been made public, heightening the urgency for users to mitigate potential threats by applying necessary security patches and updates.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
studentmanager 1.0
References
CVSS V4
Timeline
- ๐ก
Public PoC available
- ๐พ
Exploit known to exist
Vulnerability published
Vulnerability Reserved
