CVE-2024-4809
A vulnerability has been found in SourceCodester Open Source Clinic Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file setting.php. The manipulation of the argument logo leads to unrestricted upload. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-263929 was assigned to this vulnerability.
- Affected products
- Sourcecodester Open Source Clinic Management System
- Nikhil-bhalerao Open Source Clinic Management System
- = 1.0
- Fix
- Available
- CVSS 3.1
- 9.8 CRITICAL
- EPSS
- 1.2% (64th percentile)
- Weakness
- CWE-434
- NVD status
- Analyzed
- Published
- 2024-05-13
CVE-2024-4809 at NVD
No indexed exploits for CVE-2024-4809 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2024-4809 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.