A vulnerability was found in SourceCodester Prison Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /Admin/edit-photo.php of the component Avatar Handler. The manipulation of the argument avatar leads to unrestricted upload. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-259630 is the identifier assigned to this vulnerability.
Metrics
Affected Vendors & Products
References
History
Mon, 10 Feb 2025 16:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Fast5
Fast5 prison Management System |
|
CPEs | cpe:2.3:a:fast5:prison_management_system:1.0:*:*:*:*:*:*:* | |
Vendors & Products |
Fast5
Fast5 prison Management System |

Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2024-08-26T14:40:43.954Z
Reserved: 2024-04-07T13:13:48.450Z
Link: CVE-2024-3436

Updated: 2024-08-01T20:12:06.902Z

Status : Analyzed
Published: 2024-04-08T00:15:08.300
Modified: 2025-02-10T16:15:59.843
Link: CVE-2024-3436

No data.