Metrics
Affected Vendors & Products
| Source | ID | Title | 
|---|---|---|
  EUVD | 
                EUVD-2025-20222 | A vulnerability classified as critical has been found in code-projects Online Note Sharing 1.0. Affected is an unknown function of the file /dashboard/userprofile.php of the component Profile Image Handler. The manipulation of the argument image leads to unrestricted upload. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. | 
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Sun, 13 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | 
        
        
        epss
         
  | 
    
        
        
        epss
         
  | 
Tue, 08 Jul 2025 18:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | 
        
        Anisha
         Anisha online Note Sharing  | 
|
| CPEs | cpe:2.3:a:anisha:online_note_sharing:1.0:*:*:*:*:*:*:* | |
| Vendors & Products | 
        
        Anisha
         Anisha online Note Sharing  | 
Mon, 07 Jul 2025 12:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | 
        
        ssvc
         
  | 
Mon, 07 Jul 2025 10:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | A vulnerability classified as critical has been found in code-projects Online Note Sharing 1.0. Affected is an unknown function of the file /dashboard/userprofile.php of the component Profile Image Handler. The manipulation of the argument image leads to unrestricted upload. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. | |
| Title | code-projects Online Note Sharing Profile Image userprofile.php unrestricted upload | |
| Weaknesses | CWE-284 CWE-434  | 
|
| References | 
         | |
| Metrics | 
        
        cvssV2_0
         
 
 
 
  | 
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-07-07T12:03:59.085Z
Reserved: 2025-07-06T08:18:48.709Z
Link: CVE-2025-7124
Updated: 2025-07-07T12:03:47.301Z
Status : Analyzed
Published: 2025-07-07T11:15:51.483
Modified: 2025-07-08T18:29:28.530
Link: CVE-2025-7124
No data.
                        OpenCVE Enrichment
                    No data.
 EUVD