CVE-2019-25758 | Wdmtech vBizz 1.0.7 Employee View Endpoint profile_pic unrestricted upload (Exploit 46224 / EDB-46224)
A vulnerability, which was classified as critical, has been found in Wdmtech vBizz 1.0.7. Impacted is an unknown function of the component Employee View Endpoint. The manipulation of the argument profile_pic leads to unrestricted upload.
This vulnerability is listed as CVE-2019-25758. The attack may be initiated remotely. In addition, an exploit is available.