A vulnerability was found in SourceCodester E-Learning System 1.0. It has been classified as critical. Affected is an unknown function of the file /admin/modules/lesson/index.php of the component List of Lessons Page. The manipulation leads to unrestricted upload. It is possible to launch the attack remotely.
References
Link | Resource |
---|---|
https://vuldb.com/?ctiid.296574 | Permissions Required VDB Entry |
https://vuldb.com/?id.296574 | VDB Entry Permissions Required |
https://vuldb.com/?submit.504045 | VDB Entry Third Party Advisory |
https://www.sourcecodester.com/ | Product |
Configurations
History
28 Feb 2025, 19:18
Type | Values Removed | Values Added |
---|---|---|
References | () https://vuldb.com/?ctiid.296574 - Permissions Required, VDB Entry | |
References | () https://vuldb.com/?id.296574 - VDB Entry, Permissions Required | |
References | () https://vuldb.com/?submit.504045 - VDB Entry, Third Party Advisory | |
References | () https://www.sourcecodester.com/ - Product | |
CPE | cpe:2.3:a:janobe:e-learning_system:1.0:*:*:*:*:*:*:* | |
First Time |
Janobe
Janobe e-learning System |
|
Summary |
|
23 Feb 2025, 19:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-02-23 19:15
Updated : 2025-02-28 19:18
NVD link : CVE-2025-1590
Mitre link : CVE-2025-1590
CVE.ORG link : CVE-2025-1590
JSON object : View
Products Affected
janobe
- e-learning_system