Description
A vulnerability has been found in SourceCodester Real Estate Property Listing App 1.0. The impacted element is an unknown function of the file /admin/property.php. Such manipulation of the argument image leads to unrestricted upload. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Problem types
Product status
Timeline
| 2025-12-11: | Advisory disclosed |
| 2025-12-11: | VulDB entry created |
| 2025-12-11: | VulDB entry last update |
Credits
zzdzz (VulDB User)
References
github.com/zzdzz7/cve/issues/2
vuldb.com/?id.335871 (VDB-335871 | SourceCodester Real Estate Property Listing App property.php unrestricted upload)
vuldb.com/?ctiid.335871 (VDB-335871 | CTI Indicators (IOB, IOC, TTP, IOA))
vuldb.com/?submit.703238 (Submit #703238 | SourceCodester Real Estate Property Listing App Using PHP and MySQL with Source Code 1 Unrestricted Upload)
github.com/zzdzz7/cve/issues/2
www.sourcecodester.com/
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.