CVE-2025-9942: CodeAstro Real Estate Management System submitproperty.php unrestricted upload
A vulnerability has been found in CodeAstro Real Estate Management System 1.0. Affected is an unknown function of the file /submitproperty.php. The manipulation leads to unrestricted upload. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-9942?
The severity of CVE-2025-9942 is significant due to the potential for unrestricted file uploads, leading to possible remote code execution.
How do I fix CVE-2025-9942?
To fix CVE-2025-9942, implement strict file type validation and limit file upload permissions in the /submitproperty.php function.
Who is affected by CVE-2025-9942?
CVE-2025-9942 affects users of CodeAstro Real Estate Management System version 1.0.
What type of vulnerability is CVE-2025-9942?
CVE-2025-9942 is classified as an unrestricted file upload vulnerability.
Can CVE-2025-9942 be exploited remotely?
Yes, CVE-2025-9942 can be exploited remotely, allowing attackers to upload malicious files.