Critical severity9.8NVD Advisory· Published Aug 21, 2024· Updated Jun 17, 2026
CVE-2024-42777
CVE-2024-42777
Description
An Unrestricted file upload vulnerability was found in "/music/ajax.php?action=signup" of Kashipara Music Management System v1.0, which allows attackers to execute arbitrary code via uploading a crafted PHP file.
Affected products
3- cpe:2.3:a:lopalopa:music_management_system:1.0:*:*:*:*:*:*:*
(expand)+ 1 more
- (no CPE)
- (no CPE)range: = 1.0
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.