VYPR
Critical severity9.8NVD Advisory· Published May 20, 2023· Updated May 22, 2026

CVE-2023-2712

CVE-2023-2712

Description

Unrestricted Upload of File with Dangerous Type vulnerability in "Rental Module" developed by third-party for Ideasoft's E-commerce Platform allows Command Injection, Using Malicious Files, Upload a Web Shell to a Web Server.

This issue affects Rental Module: before 23.05.15.

Affected products

2

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.