Description
A flaw has been found in code-projects Computer Laboratory System 1.0. This issue affects some unknown processing of the file admin/admin_pic.php. This manipulation of the argument image causes unrestricted upload. The attack may be initiated remotely. The exploit has been published and may be used.
Problem types
Product status
Timeline
| 2025-12-13: | Advisory disclosed |
| 2025-12-13: | VulDB entry created |
| 2025-12-13: | VulDB entry last update |
Credits
Yohane-Mashiro (VulDB User)
References
vuldb.com/?id.336374 (VDB-336374 | code-projects Computer Laboratory System admin_pic.php unrestricted upload)
vuldb.com/?ctiid.336374 (VDB-336374 | CTI Indicators (IOB, IOC, TTP, IOA))
vuldb.com/?submit.707865 (Submit #707865 | code-projects.org Computer Laboratory System In PHP With Source Code 1.0 Unrestricted Upload)
github.com/Yohane-Mashiro/cve/blob/main/upload 3.md
code-projects.org/
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.