Home

Description

A Shell Upload vulnerability in Tourism Management System 2.0 allows an attacker to upload and execute arbitrary PHP shell scripts on the server, leading to remote code execution and unauthorized access to the system. This can result in the compromise of sensitive data and system functionality.

PUBLISHED Reserved 2025-08-17 | Published 2025-09-10 | Updated 2025-09-22 | Assigner mitre

References

github.com/sohamjuhin/Tourism-Management-System/issues/2

github.com/debug-security/CVE/tree/main/CVE-2025-57642

cve.org (CVE-2025-57642)

nvd.nist.gov (CVE-2025-57642)

Download JSON