Foody Friend 1.0 Arbitrary File Upload / Cross Site Scriptin

Foody Friend 1.0 Arbitrary File Upload / Cross Site Scripting

# Exploit Title: Foody Friend 1.0 - Arbitrary File Upload# Exploit Author: CraCkEr# Date: 12/07/2023# Vendor: Bug Finder# Vendor Homepage: https://bugfinder.net/# Software Link: https://bugfinder.net/product/foody-friend-a-saas-based-web-app-food-ordering-bot-for-telegram-and-messenger/25# Tested on: Windows 10 Pro# Impact: Allows User to upload files to the web server## DescriptionAllows Attacker to upload malicious files onto the server, such as Stored XSS## Steps to Reproduce:1.

Related Keywords

, Software Link , Exploit Title , Foody Friend , Arbitrary File , Exploit Author , Vendor Homepage , Allows User , Profile Picture , Uploded Evil ,

© 2025 Vimarsana