
CVE-2019-25647 PhreeBooks ERP 5.2.3 contains a remote code execution vulnerability in the image manager that allows authenticated attackers to upload and execute arbitrary PHP files… https://www.cve.org/CVERecord?id=CVE-2019-25647
Post summary
The post discloses a remote code execution flaw in PhreeBooks ERP 5.2.3's image manager that allows authenticated attackers to upload and run arbitrary PHP files.


