Description
A flaw has been found in campcodes Online Student Enrollment System 1.0. This impacts an unknown function of the file /admin/register.php. Executing manipulation of the argument photo can lead to unrestricted upload. The attack can be launched remotely. The exploit has been published and may be used.
Problem types
Product status
Timeline
| 2025-12-12: | Advisory disclosed |
| 2025-12-12: | VulDB entry created |
| 2025-12-12: | VulDB entry last update |
Credits
joajoa (VulDB User)
References
vuldb.com/?id.336203 (VDB-336203 | campcodes Online Student Enrollment System register.php unrestricted upload)
vuldb.com/?ctiid.336203 (VDB-336203 | CTI Indicators (IOB, IOC, TTP, IOA))
vuldb.com/?submit.705525 (Submit #705525 | campcodes Online Student Enrollment System V1.0 Unrestricted Upload)
github.com/CHENCHOUCHOU/vuln/issues/1
www.campcodes.com/
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.