ID |
CVE-2025-1593
|
Sažetak |
A vulnerability classified as critical has been found in SourceCodester Best Employee Management System 1.0. This affects an unknown part of the file /_hr_soft/assets/uploadImage/Profile/ of the component Profile Picture Handler. The manipulation leads to unrestricted upload. It is possible to initiate the attack remotely. |
Reference |
|
CVSS |
Base: | 5.8 |
Impact: | 6.4 |
Exploitability: | 6.4 |
|
Pristup |
Vektor | Složenost | Autentikacija |
NETWORK |
LOW |
MULTIPLE |
|
Impact |
Povjerljivost | Cjelovitost | Dostupnost |
PARTIAL |
PARTIAL |
PARTIAL |
|
CVSS vektor |
AV:N/AC:L/Au:M/C:P/I:P/A:P |
Zadnje važnije ažuriranje |
23-02-2025 - 20:15 |
Objavljeno |
23-02-2025 - 20:15 |