Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

B3Nj1

#27360of 56,330
9.8Total CVSS
Vulnerabilities · 1
PT-2022-19081
9.8
2022-05-04
Sourcecodester · Sourcecodester Doctors Appointment System · CVE-2022-28568
**Name of the Vulnerable Software and Affected Versions** Sourcecodester Doctor's Appointment System version 1.0 **Description** The issue allows for remote command execution through file upload, specifically via image upload from the administrator panel. An attacker can exploit this by knowing the path where the images are stored. **Recommendations** For Sourcecodester Doctor's Appointment System version 1.0, consider restricting access to the image upload feature in the administrator panel until a fix is available. As a temporary workaround, restrict write access to the directory where uploaded images are stored to minimize the risk of exploitation.