cve/2020/CVE-2020-12854.md
2024-06-09 00:33:16 +00:00

836 B

CVE-2020-12854

Description

A remote code execution vulnerability was identified in SecZetta NEProfile 3.3.11. Authenticated remote adversaries can invoke code execution upon uploading a carefully crafted JPEG file as part of the profile avatar.

POC

Reference

Github

No PoCs found on GitHub currently.