Home / os / palm

Zoo Management System 1.0 Shell Upload

Posted on 16 October 2023

Zoo Management System version 1.0 suffers from a remote shell upload vulnerability. This version originally had a shell upload vulnerability discovered by D4rkP0w4r that leveraged the upload CV flow but this particular finding leverages the save_animal flow.

 

TOP