Description
A flaw has been found in SourceCodester Client Database Management System 1.0. This affects an unknown part of the file /user_leads.php of the component Leads Generation Module. Executing manipulation can lead to unrestricted upload. The attack can be launched remotely. The exploit has been published and may be used.
Problem types
Product status
Timeline
| 2025-12-18: | Advisory disclosed |
| 2025-12-18: | VulDB entry created |
| 2025-12-18: | VulDB entry last update |
Credits
rvpipalwa (VulDB User)
References
medium.com/...xecution-rce-vulnerability-report-4394b38ff90e
vuldb.com/?id.337373 (VDB-337373 | SourceCodester Client Database Management System Leads Generation user_leads.php unrestricted upload)
vuldb.com/?ctiid.337373 (VDB-337373 | CTI Indicators (IOB, IOC, TTP, IOA))
vuldb.com/?submit.715595 (Submit #715595 | SourceCodester Client Database Management System 1 Unrestricted Upload)
medium.com/...xecution-rce-vulnerability-report-4394b38ff90e
www.sourcecodester.com/
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.