Metrics
Affected Vendors & Products
Tue, 10 Jun 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Lerouxyxchire
Lerouxyxchire client Database Management System |
|
| CPEs | cpe:2.3:a:lerouxyxchire:client_database_management_system:1.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Lerouxyxchire
Lerouxyxchire client Database Management System |
Wed, 28 May 2025 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 28 May 2025 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in SourceCodester Client Database Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /user_order_customer_update.php. The manipulation of the argument uploaded_file_cancelled leads to unrestricted upload. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. | |
| Title | SourceCodester Client Database Management System user_order_customer_update.php unrestricted upload | |
| Weaknesses | CWE-284 CWE-434 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-05-28T12:00:08.743Z
Updated: 2025-05-28T13:00:57.583Z
Reserved: 2025-05-28T06:48:35.109Z
Link: CVE-2025-5299
Updated: 2025-05-28T12:59:41.947Z
Status : Analyzed
Published: 2025-05-28T12:15:21.307
Modified: 2025-06-10T15:46:55.753
Link: CVE-2025-5299
No data.