CVE-2025-46193: Malicious File Upload
Published May 9, 2025
·Updated
SourceCodester Client Database Management System 1.0 is vulnerable to Remote code execution via Arbitrary file upload in userproposalupdateorder.php.
Affected Software
2 affected components
Sourcecodester Client Database Management System
Lerouxyxchire Client Database Management System=1.0
Event History
May 9, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeakness
Nov 22, 57334
Event
via FIRST·11:43 AM
Frequently Asked Questions
1
What is the severity of CVE-2025-46193?
CVE-2025-46193 has a high severity as it allows remote code execution through arbitrary file uploads.
2
How do I fix CVE-2025-46193?
To fix CVE-2025-46193, validate and restrict file types and sizes before processing uploads in user_proposal_update_order.php.
3
Who is affected by CVE-2025-46193?
CVE-2025-46193 affects users of SourceCodester Client Database Management System version 1.0.
4
What type of vulnerability is CVE-2025-46193?
CVE-2025-46193 is classified as a Remote Code Execution vulnerability due to an arbitrary file upload flaw.
5
What is the impact of CVE-2025-46193?
The impact of CVE-2025-46193 includes unauthorized remote access and control of the affected system.