A Remote Code Execution (RCE) vulnerability exists in Sourcecodester Attendance and Payroll System v1.0 which allows an unauthenticated remote attacker to upload a maliciously crafted PHP via photo upload.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Attendance_and_payroll_system | Attendance_and_payroll_system_project | 1.0 (including) | 1.0 (including) |