First published: Sun Jan 12 2025(Updated: )
A vulnerability was found in StarSea99 starsea-mall 1.0. It has been declared as critical. This vulnerability affects the function UploadController of the file src/main/java/com/siro/mall/controller/common/uploadController.java. The manipulation of the argument file leads to unrestricted upload. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
StarSea99 starsea-mall |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-0399 is classified as a critical vulnerability.
To fix CVE-2025-0399, you should update to the latest version of the StarSea99 starsea-mall software where the vulnerability has been patched.
CVE-2025-0399 affects the UploadController function in the file src/main/java/com/siro/mall/controller/common/uploadController.java.
CVE-2025-0399 is a vulnerability that allows for unrestricted file upload.
CVE-2025-0399 impacts the StarSea99 starsea-mall software.