CVE-2024-13210 | donglight bookstore电商书城系统说明 1.0 AdminBookController. java uploadPicture pictureFile unrestricted upload
A vulnerability was found in donglight bookstore电商书城系统说明 1.0. It has been declared as critical. The impacted element is the function uploadPicture of the file src/main/java/org/zdd/bookstore/web/controller/admin/AdminBookController. java. The manipulation of the argument pictureFile results in unrestricted upload.
This vulnerability is cataloged as CVE-2024-13210. The attack may be launched remotely. Furthermore, there is an exploit available.