CVE-2025-9941: CodeAstro Real Estate Management System register.php unrestricted upload
A flaw has been found in CodeAstro Real Estate Management System 1.0. This impacts an unknown function of the file /register.php. Executing manipulation of the argument uimage can lead to unrestricted upload. The attack can be launched remotely. The exploit has been published and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-9941?
CVE-2025-9941 has a high severity due to its potential for allowing unrestricted file uploads.
How do I fix CVE-2025-9941?
To fix CVE-2025-9941, validate and sanitize user input for the 'uimage' argument in the /register.php file.
Can CVE-2025-9941 be exploited remotely?
Yes, CVE-2025-9941 can be exploited remotely, making it a significant risk for web applications.
Which software is affected by CVE-2025-9941?
CVE-2025-9941 affects version 1.0 of CodeAstro Real Estate Management System.
What type of attack is associated with CVE-2025-9941?
CVE-2025-9941 is associated with a file upload vulnerability that could lead to various exploits.