Vulnerabilities > Webiness Project

DATE CVE VULNERABILITY TITLE RISK
2018-10-29 CVE-2018-18752 Unrestricted Upload of File with Dangerous Type vulnerability in Webiness Project Webiness Inventory 2.3
Webiness Inventory 2.3 suffers from an Arbitrary File upload vulnerability via PHP code in the protected/library/ajax/WsSaveToModel.php logo parameter.
network
low complexity
webiness-project CWE-434
critical
9.8