Vulnerabilities (CVE)

Filtered by vendor Phpstore Subscribe
Filtered by product Phpcareers
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-6931 1 Phpstore 1 Phpcareers 2024-11-21 6.5 MEDIUM N/A
Unrestricted file upload vulnerability in PHPStore Job Search (aka PHPCareers) allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension as a resume photo, then accessing it via a direct request to the file in jobseekers/jobseeker_profile_images.