CVE-2025-15213: code-projects Student File Management System File Download download.php improper authorization
A vulnerability has been found in code-projects Student File Management System 1.0. The affected element is an unknown function of the file /download.php of the component File Download Handler. The manipulation of the argument storeid leads to improper authorization. The attack is possible to be carried out remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-15213?
CVE-2025-15213 has been classified as a medium severity vulnerability due to its potential impact on authorization processes.
How do I fix CVE-2025-15213?
To mitigate CVE-2025-15213, ensure that proper authorization checks are implemented in the file download handling logic.
What component is affected by CVE-2025-15213?
CVE-2025-15213 affects the file download handler component in the Student File Management System.
What type of vulnerability is CVE-2025-15213?
CVE-2025-15213 is an improper authorization vulnerability that can lead to unauthorized file access.
Which software versions are affected by CVE-2025-15213?
CVE-2025-15213 affects version 1.0 of the Student File Management System by Code-projects.