The vulnerability is an Arbitrary File Upload vulnerability, which allows an attacker to upload malicious files to a website without proper validation or restrictions. This can lead to severe security consequences, including code execution, data breaches, and website defacement.
In August 2022, a security researcher discovered a vulnerability in Nicepage, a website builder software developed by Theme over Cute. The vulnerability was identified in version 4.8.2 of the software. nicepage 4.8.2 exploit
You're referring to a specific vulnerability in Nicepage, a popular website builder software. Here's what I found: The vulnerability is an Arbitrary File Upload vulnerability,
The vulnerability was discovered by a security researcher, who reported it to the vendor, Theme over Cute. The researcher found that the Nicepage software did not properly validate user-uploaded files, allowing an attacker to upload arbitrary files, including malicious PHP files. The vulnerability was identified in version 4
Yes, Theme over Cute has released a patched version of Nicepage, version 4.8.3, which addresses the Arbitrary File Upload vulnerability. Users of Nicepage 4.8.2 are strongly advised to update to version 4.8.3 or later to prevent exploitation.