A vulnerability was found in SourceCodester Image Compressor Tool 1.0. It has been rated as problematic. This issue affects some unknown processing of the file /image-compressor/compressor.php. The manipulation of the argument image leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
History

Mon, 03 Mar 2025 17:45:00 +0000

Type Values Removed Values Added
First Time appeared Rems
Rems image Compressor Tool
CPEs cpe:2.3:a:rems:image_compressor_tool:1.0:*:*:*:*:*:*:*
Vendors & Products Rems
Rems image Compressor Tool

Tue, 11 Feb 2025 06:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 11 Feb 2025 03:00:00 +0000

Type Values Removed Values Added
Description A vulnerability was found in SourceCodester Image Compressor Tool 1.0. It has been rated as problematic. This issue affects some unknown processing of the file /image-compressor/compressor.php. The manipulation of the argument image leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Title SourceCodester Image Compressor Tool compressor.php cross site scripting
Weaknesses CWE-79
CWE-94
References
Metrics cvssV2_0

{'score': 4, 'vector': 'AV:N/AC:L/Au:S/C:N/I:P/A:N'}

cvssV3_0

{'score': 3.5, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N'}

cvssV3_1

{'score': 3.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N'}

cvssV4_0

{'score': 5.1, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2025-02-18T18:01:36.532Z

Reserved: 2025-02-10T09:09:08.240Z

Link: CVE-2025-1169

cve-icon Vulnrichment

Updated: 2025-02-11T05:31:40.385Z

cve-icon NVD

Status : Analyzed

Published: 2025-02-11T03:15:07.640

Modified: 2025-03-03T16:52:20.953

Link: CVE-2025-1169

cve-icon Redhat

No data.