A vulnerability was found in SourceCodester Prison Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /Admin/add-admin.php of the component Avatar Handler. The manipulation of the argument avatar leads to unrestricted upload. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-259631.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-32024 | A vulnerability was found in SourceCodester Prison Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /Admin/add-admin.php of the component Avatar Handler. The manipulation of the argument avatar leads to unrestricted upload. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-259631. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Mon, 10 Feb 2025 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Fast5
Fast5 prison Management System |
|
| CPEs | cpe:2.3:a:fast5:prison_management_system:1.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Fast5
Fast5 prison Management System |
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2024-08-21T22:24:01.651Z
Reserved: 2024-04-07T13:13:50.862Z
Link: CVE-2024-3437
Updated: 2024-08-01T20:12:07.197Z
Status : Analyzed
Published: 2024-04-08T00:15:08.537
Modified: 2025-02-10T16:15:30.727
Link: CVE-2024-3437
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD