CVE-2025-10600: SourceCodester Online Exam Form Submission register.php unrestricted upload
A flaw has been found in SourceCodester Online Exam Form Submission 1.0. This impacts an unknown function of the file /register.php. This manipulation of the argument img causes unrestricted upload. It is possible to initiate the attack remotely. The exploit has been published and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-10600?
CVE-2025-10600 has a high severity due to allowing unrestricted file uploads.
How do I fix CVE-2025-10600?
To fix CVE-2025-10600, restrict the file types that can be uploaded and validate the file content on the server.
What impact does CVE-2025-10600 have on my application?
CVE-2025-10600 allows attackers to upload malicious files, potentially leading to remote code execution.
Can CVE-2025-10600 be exploited remotely?
Yes, CVE-2025-10600 can be exploited remotely through the vulnerable /register.php file.
Which software is affected by CVE-2025-10600?
CVE-2025-10600 affects SourceCodester Online Exam Form Submission version 1.0.