High severity7.2NVD Advisory· Published Oct 27, 2022· Updated Jun 17, 2026
CVE-2022-39978
CVE-2022-39978
Description
Online Pet Shop We App v1.0 was discovered to contain an arbitrary file upload vulnerability via the Editing function in the Product List module. This vulnerability allows attackers to execute arbitrary code via a crafted PHP file uploaded through the picture upload point.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:online_pet_shop_we_app_project:online_pet_shop_we_app:1.0:*:*:*:*:*:*:*
- Online Pet Shop We App/Online Pet Shop We Appdescription
- Range: <=1.0
Patches
Vulnerability mechanics
References
1- github.com/z1pwn/bug_report/blob/main/vendors/oretnom23/online-pet-shop-we-app/RCE-1.mdnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.