What the vulnerability does
01Description
Unrestricted Upload of File with Dangerous Type vulnerability in Pie Register.This issue affects Pie Register: from n/a through 3.8.3.1.
CVSS base score
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
What the vulnerability does
Unrestricted Upload of File with Dangerous Type vulnerability in Pie Register.This issue affects Pie Register: from n/a through 3.8.3.1.
Explanation of Vulnerability in Simple Terms
Pie Register versions up to 3.8.3.1 allow unauthenticated attackers to upload arbitrary files to the server without restriction. An attacker can upload malicious files—such as PHP scripts—directly over the network, gaining the ability to run code on the site and compromise it completely. No user interaction or special privileges are required.
What an attacker can do
Upload arbitrary files and run malicious code on the site without authentication.
Potential impact on your site
Complete site compromise: attackers can execute code, steal data, modify content, and take full control.
Conditions required to exploit
Network access only; no authentication, user interaction, or special privileges required.
Key dates
External resources
Related vulnerabilities