Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Pwdido

#26525of 56,328
9.8Total CVSS
Vulnerabilities · 1
PT-2022-26809
9.8
2022-11-16
Hoosk · Hoosk · CVE-2022-43234
**Name of the Vulnerable Software and Affected Versions** Hoosk version 1.8 **Description** An arbitrary file upload vulnerability in the "/attachments" component allows attackers to execute arbitrary code via a crafted PHP file. **Recommendations** For Hoosk version 1.8, consider disabling the "/attachments" component until a patch is available to prevent arbitrary file uploads and subsequent code execution.