A unrestricted file upload vulnerability was discovered in the βBrowse and upload imagesβ feature of the CKEditor v1.2.3 plugin for Redmine, which allows arbitrary files to be uploaded to the server.
https://github.com/DreamD2v/CVE-2023-31541/blob/main/CVE-2023-31541.md
https://github.com/DreamD2v/CVE-2023-31541/blob/main/CVE-2023-31541.md
GitHub
CVE-2023-31541/CVE-2023-31541.md at main Β· DreamD2v/CVE-2023-31541
Contribute to DreamD2v/CVE-2023-31541 development by creating an account on GitHub.
π2
If you received a bounty and are unable to claim it, I can help you claim your prize
(HackerOne and Bugcrowd)
@Offensive
(HackerOne and Bugcrowd)
@Offensive
π8π1π«‘1
This media is not supported in your browser
VIEW IN TELEGRAM
What an interesting approach :)
π€―5π1
π4