A vulnerability was found in kuangstudy KuangSimpleBBS 1.0. It has been declared as critical. Affected by this vulnerability is the function fileUpload of the file src/main/java/com/kuang/controller/QuestionController.java. The manipulation of the argument editormd-image-file leads to unrestricted upload. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
#RESOURCE

The Ultimate Cybersecurity Resource List. A curated directory of cybersecurity tools and resources for infosec professionals.

Resources + Guides Stay safe online.Our collection of digital resources, at your virtual fingertips.We want to make it easy for everyone to learn more.

Check out the Synack Resource Hub for the latest company events, news, and research.

Commands, Payloads and Resources for the OffSec Certified Professional Certification (OSCP).

The Computer Security Resource Center (CSRC) has information on many of NIST's cybersecurity- and information security-related projects, publications, news and events. CSRC supports people and organizations in government, industry, and academia—both in the U.S. and internationally.