Vulnerability CVE-2023-7147


Published: 2023-12-29

Description:
A vulnerability, which was classified as critical, was found in gopeak MasterLab up to 3.3.10. Affected is the function base64ImageContent of the file app/ctrl/User.php. The manipulation of the argument image leads to unrestricted upload. It is possible to launch the attack remotely. VDB-249150 is the identifier assigned to this vulnerability.

Type:

CWE-434

(Unrestricted Upload of File with Dangerous Type)

 References:
https://vuldb.com/?id.249150
https://vuldb.com/?ctiid.249150
https://note.zhaoj.in/share/affd8cjn50HC

Copyright 2026, cxsecurity.com

 

Back to Top