Security Advisory
CVE-2019-3960
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
Unrestricted upload of file with dangerous type in WallacePOS 1.4.3 allows a remote, authenticated attacker to execute arbitrary code by uploading a malicious PHP file.