code-projects Computer Laboratory System 1.0 has a file upload vulnerability. Staff can upload malicious files by uploading PHP backdoor files when modifying personal avatar information and use web shell connection tools to obtain server permissions.
References
Configurations
No configuration.
History
16 Sep 2025, 19:15
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.3 |
References | () https://github.com/Chen1-Boop/CVE/blob/main/CVE-2025-56295.md - | |
CWE | CWE-434 |
16 Sep 2025, 15:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-09-16 15:15
Updated : 2025-09-17 14:18
NVD link : CVE-2025-56295
Mitre link : CVE-2025-56295
CVE.ORG link : CVE-2025-56295
JSON object : View
Products Affected
No product.
CWE
CWE-434
Unrestricted Upload of File with Dangerous Type