Medium severity4.7NVD Advisory· Published Jan 9, 2025· Updated Jun 17, 2026
CVE-2024-13210
CVE-2024-13210
Description
A vulnerability was found in donglight bookstore电商书城系统说明 1.0. It has been declared as critical. Affected by this vulnerability is the function uploadPicture of the file src/main/java/org/zdd/bookstore/web/controller/admin/AdminBookController. java. The manipulation of the argument pictureFile leads to unrestricted upload. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- donglight/bookstore电商书城系统说明v5Range: 1.0
Patches
Vulnerability mechanics
References
5- github.com/donglight/bookstore/issues/10nvdExploitIssue Tracking
- github.com/donglight/bookstore/issues/10nvdExploitIssue Tracking
- vuldb.comnvdThird Party AdvisoryVDB Entry
- vuldb.comnvdThird Party AdvisoryVDB Entry
- vuldb.comnvdPermissions RequiredVDB Entry
News mentions
0No linked articles in our index yet.