Description
SourceCodester Client Database Management System 1.0 is vulnerable to Remote code execution via Arbitrary file upload in user_proposal_update_order.php.
References
portswigger.net/web-security/file-upload
github.com/x6vrn/mitre/blob/main/CVE-2025-46193.md