An arbitrary file upload vulnerability in the component /php_action/editProductImage.php of Billing System Project v1.0 allows attackers to execute arbitrary code via a crafted PHP file.
| Software | From | Fixed in |
|---|---|---|
| billing_system_project / billing_system | 1.0 | 1.0.x |