CVE-2025-8379: Campcodes Online Hotel Reservation System edit_room.php unrestricted upload
A vulnerability classified as critical has been found in Campcodes Online Hotel Reservation System 1.0. This affects an unknown part of the file /admin/editroom.php. The manipulation of the argument photo leads to unrestricted upload. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-8379?
CVE-2025-8379 is classified as a critical vulnerability.
How do I fix CVE-2025-8379?
To fix CVE-2025-8379, ensure proper validation and restrictions on file uploads in the /admin/edit_room.php functionality.
What part of the software is affected by CVE-2025-8379?
CVE-2025-8379 affects the /admin/edit_room.php file of the Campcodes Online Hotel Reservation System.
Can CVE-2025-8379 be exploited remotely?
Yes, CVE-2025-8379 can be exploited remotely, allowing attackers to upload files without restrictions.
What type of vulnerability is CVE-2025-8379?
CVE-2025-8379 is an unrestricted file upload vulnerability.