CVE-2025-4468: SourceCodester Online Student Clearance System edit-photo.php unrestricted upload
A vulnerability was found in SourceCodester Online Student Clearance System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /edit-photo.php. The manipulation of the argument userImage leads to unrestricted upload. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-4468?
CVE-2025-4468 has been rated as critical due to the potential for unrestricted file uploads.
What file is affected by CVE-2025-4468?
CVE-2025-4468 specifically affects the /edit-photo.php file in the SourceCodester Online Student Clearance System.
What type of vulnerability is CVE-2025-4468?
CVE-2025-4468 is a file upload vulnerability that allows an attacker to upload arbitrary files.
How do I fix CVE-2025-4468?
To fix CVE-2025-4468, ensure proper validation and restriction of file types and sizes for uploads.
Can CVE-2025-4468 lead to further attacks?
Yes, exploitation of CVE-2025-4468 can lead to additional attacks such as code execution or data breaches.