CVE-2025-4923: SourceCodester Client Database Management System user_delivery_update.php unrestricted upload
A vulnerability, which was classified as critical, has been found in SourceCodester Client Database Management System 1.0. This issue affects some unknown processing of the file /userdeliveryupdate.php. The manipulation of the argument uploadedfilecancelled leads to unrestricted upload. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-4923?
CVE-2025-4923 is classified as a critical vulnerability affecting the SourceCodester Client Database Management System.
How do I fix CVE-2025-4923?
To fix CVE-2025-4923, you should apply the latest security patches provided by SourceCodester for the Client Database Management System.
What component of SourceCodester is affected by CVE-2025-4923?
CVE-2025-4923 specifically affects the /user_delivery_update.php file in the SourceCodester Client Database Management System.
What type of vulnerability is CVE-2025-4923?
CVE-2025-4923 is a vulnerability that allows for unrestricted file uploads, posing a significant security risk.
Is there a known exploit for CVE-2025-4923?
Yes, CVE-2025-4923 has reported exploit scenarios that take advantage of the unrestricted file upload capability.