Bypass File Upload Restrictions and Execute Arbitrary Code via Administrator Profile Photo Upload Feature
CVE-2024-22724
6.6MEDIUM
What is CVE-2024-22724?
An issue was discovered in osCommerce v4, allows local attackers to bypass file upload restrictions and execute arbitrary code via administrator profile photo upload feature.
