Description
A weakness has been identified in SourceCodester Online Student File Management System 1.0. This affects an unknown function of the file /save_file.php. Executing manipulation can lead to unrestricted upload. The attack may be launched remotely. The exploit has been made available to the public and could be exploited.
In SourceCodester Online Student File Management System 1.0 ist eine Schwachstelle entdeckt worden. Davon betroffen ist unbekannter Code der Datei /save_file.php. Die Manipulation führt zu unrestricted upload. Die Umsetzung des Angriffs kann dabei über das Netzwerk erfolgen. Der Exploit steht zur öffentlichen Verfügung.
Problem types
Product status
Timeline
| 2025-09-15: | Advisory disclosed | 
| 2025-09-15: | VulDB entry created | 
| 2025-09-15: | VulDB entry last update | 
Credits
quchunyi1 (VulDB User) 
References
vuldb.com/?id.323915 (VDB-323915 | SourceCodester Online Student File Management System save_file.php unrestricted upload) 
vuldb.com/?ctiid.323915 (VDB-323915 | CTI Indicators (IOB, IOC, TTP, IOA)) 
vuldb.com/?submit.648541 (Submit #648541 | SourceCodester Online Student File Management System 1.0 Unrestricted Upload) 
github.com/ganzhi-qcy/cve/issues/26 
www.sourcecodester.com/