A remote code execution (RCE) vulnerability in Online Banking System Protect v1.0 allows attackers to execute arbitrary code via a crafted PHP file uploaded through the Upload Image function.
The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.
Link | Tags |
---|---|
http://online.com | broken link |
https://github.com/erik-451/CVE/tree/main/CVE-2022-26645 | third party advisory exploit |