Show filters
3 Total Results
Displaying 1-3 of 3
Sort by:
Attacker Value
Unknown

CVE-2024-10202

Disclosure Date: October 21, 2024 (last updated October 25, 2024)
Administrative Management System from Wellchoose has an OS Command Injection vulnerability, allowing remote attackers with regular privileges to inject and execute arbitrary OS commands.
Attacker Value
Unknown

CVE-2024-10201

Disclosure Date: October 21, 2024 (last updated October 25, 2024)
Administrative Management System from Wellchoose does not properly validate uploaded file types, allowing remote attackers with regular privileges to upload and execute webshells.
Attacker Value
Unknown

CVE-2024-10200

Disclosure Date: October 21, 2024 (last updated October 25, 2024)
Administrative Management System from Wellchoose has a Path Traversal vulnerability, allowing unauthenticated remote attackers to exploit this vulnerability to download arbitrary files on the server.