VYPR
Unrated severityNVD Advisory· Published Apr 29, 2024· Updated Aug 1, 2024

Unrestricted Upload of File with Dangerous Type vulnerability in HubBank

CVE-2024-4306

Description

Critical unrestricted file upload vulnerability in HubBank affecting version 1.0.2. This vulnerability allows a registered user to upload malicious PHP files via upload document fields, resulting in webshell execution.

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.