Security Advisory

CVE-2023-2712

9.8
CRITICAL

Vulnerability Description

Unrestricted Upload of File with Dangerous Type vulnerability in "Rental Module" developed by third-party for Ideasoft's E-commerce Platform allows Command Injection, Using Malicious Files, Upload a Web Shell to a Web Server. This issue affects Rental Module: before 23.05.15.
Published Date May 20, 2023
Official Source NIST NVD Advisory