CVE-2025-1166

A vulnerability has been found in SourceCodester Food Menu Manager 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file endpoint/update.php. The manipulation leads to unrestricted upload. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Configurations

No configuration.

History

18 Feb 2025, 18:15

Type Values Removed Values Added
Summary
  • (es) Se ha encontrado una vulnerabilidad en SourceCodester Food Menu Manager 1.0 y se ha clasificado como crítica. Esta vulnerabilidad afecta a una funcionalidad desconocida del archivo endpoint/update.php. La manipulación permite la carga sin restricciones. El ataque se puede ejecutar de forma remota. El exploit se ha hecho público y puede utilizarse.

11 Feb 2025, 02:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-02-11 02:15

Updated : 2025-02-18 18:15


NVD link : CVE-2025-1166

Mitre link : CVE-2025-1166

CVE.ORG link : CVE-2025-1166


JSON object : View

Products Affected

No product.

CWE
CWE-284

Improper Access Control

CWE-434

Unrestricted Upload of File with Dangerous Type