Metrics
Affected Vendors & Products
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Mon, 20 Oct 2025 16:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | 
        
        Projectsandprograms
         Projectsandprograms school Management System  | 
|
| Vendors & Products | 
        
        Projectsandprograms
         Projectsandprograms school Management System  | 
Thu, 16 Oct 2025 18:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | 
        
        Oranbyte
         Oranbyte school Management System  | 
|
| CPEs | cpe:2.3:a:oranbyte:school_management_system:1.0:*:*:*:*:*:*:* | |
| Vendors & Products | 
        
        Oranbyte
         Oranbyte school Management System  | 
Tue, 14 Oct 2025 14:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | 
        
        ssvc
         
  | 
Mon, 13 Oct 2025 03:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | A flaw has been found in ProjectsAndPrograms School Management System up to 6b6fae5426044f89c08d0dd101c7fa71f9042a59. Affected by this vulnerability is an unknown functionality of the file /assets/uploadNotes.php. This manipulation of the argument File causes unrestricted upload. Remote exploitation of the attack is possible. The exploit has been published and may be used. This product follows a rolling release approach for continuous delivery, so version details for affected or updated releases are not provided. | |
| Title | ProjectsAndPrograms School Management System uploadNotes.php unrestricted upload | |
| Weaknesses | CWE-284 CWE-434  | 
|
| References | 
         | |
| Metrics | 
        
        cvssV2_0
         
 
 
 
  | 
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-10-14T13:38:34.930Z
Reserved: 2025-10-12T06:37:11.018Z
Link: CVE-2025-11659
Updated: 2025-10-14T13:38:21.815Z
Status : Analyzed
Published: 2025-10-13T04:15:55.470
Modified: 2025-10-16T18:22:26.047
Link: CVE-2025-11659
No data.
                        OpenCVE Enrichment
                    Updated: 2025-10-20T16:14:49Z