Vulnerabilities > Lenosp Project

DATE CVE VULNERABILITY TITLE RISK
2023-09-14 CVE-2023-42180 Unrestricted Upload of File with Dangerous Type vulnerability in Lenosp Project Lenosp 1.0/1.2.0
An arbitrary file upload vulnerability in the /user/upload component of lenosp 1.0-1.2.0 allows attackers to execute html code via a crafted JPG file.
network
low complexity
lenosp-project CWE-434
8.8