Critical severity9.8NVD Advisory· Published May 26, 2022· Updated Jun 17, 2026
CVE-2022-29632
CVE-2022-29632
Description
An arbitrary file upload vulnerability in the component /course/api/upload/pic of Roncoo Education v9.0.0 allows attackers to execute arbitrary code via a crafted file.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:roncoo:roncoo-education:9.0.0:*:*:*:*:*:*:*
- Roncoo/Roncoo Educationdescription
- Range: =9.0.0
Patches
Vulnerability mechanics
References
1- github.com/roncoo/roncoo-education/issues/16nvdExploitIssue TrackingThird Party Advisory
News mentions
0No linked articles in our index yet.