CVE-2025-1166: SourceCodester Food Menu Manager update.php unrestricted upload
A vulnerability has been found in SourceCodester Food Menu Manager 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file endpoint/update.php. The manipulation leads to unrestricted upload. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-1166?
CVE-2025-1166 is classified as a critical vulnerability.
How do I fix CVE-2025-1166?
To fix CVE-2025-1166, it is recommended to update the SourceCodester Food Menu Manager to the latest version that addresses this issue.
What types of attacks are possible with CVE-2025-1166?
CVE-2025-1166 allows for unrestricted file uploads, which can lead to remote code execution.
Which software is affected by CVE-2025-1166?
CVE-2025-1166 affects SourceCodester Food Menu Manager version 1.0.
Is CVE-2025-1166 exploitable remotely?
Yes, CVE-2025-1166 can be exploited remotely due to its nature of unrestricted uploads.