What the vulnerability does
01Description
Unrestricted Upload of File with Dangerous Type vulnerability in Artbees JupiterX Core.This issue affects JupiterX Core: from n/a through 3.3.5.
CVSS base score
CVSS vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H
What the vulnerability does
Unrestricted Upload of File with Dangerous Type vulnerability in Artbees JupiterX Core.This issue affects JupiterX Core: from n/a through 3.3.5.
Explanation of Vulnerability in Simple Terms
JupiterX Core versions up to 3.3.5 do not properly validate file uploads, allowing an attacker to upload malicious files to the site without authentication. This can lead to remote code execution, data theft, or site takeover. The vulnerability affects the core functionality and requires no user interaction to exploit.
What an attacker can do
Upload and execute malicious files on the site without logging in.
Potential impact on your site
Attackers can run code on your site, steal data, or take full control without needing a user account.
Conditions required to exploit
Network access to the site; no authentication or user interaction required.
Key dates
External resources
Related vulnerabilities