A vulnerability was found in code-projects Online Notice Board up to 1.0 and classified as critical. This issue affects some unknown processing of the file /registration.php of the component Profile Picture Handler. The manipulation of the argument img leads to unrestricted upload.

The identification of this vulnerability is CVE-2024-12233. The attack may be initiated remotely. Furthermore, there is an exploit available.