CVE-2026-19987: SourceCodester Best Employee Management System Profile exposure of information through directory listing
A security vulnerability has been detected in SourceCodester Best Employee Management System 1.0. This affects an unknown function of the file /assets/uploadImage/Profile/. Such manipulation leads to exposure of information through directory listing. It is possible to launch the attack remotely.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-19987?
The severity of CVE-2026-19987 is classified as medium with a score of 5.3.
How does CVE-2026-19987 affect the SourceCodester Best Employee Management System?
CVE-2026-19987 allows for information exposure through directory listing due to a vulnerability in the /assets/uploadImage/Profile/ directory.
Can CVE-2026-19987 be exploited remotely?
Yes, CVE-2026-19987 can be exploited remotely by an attacker.
What kind of information is exposed due to CVE-2026-19987?
CVE-2026-19987 can lead to the exposure of sensitive information contained within the Profile directory.
How can I mitigate the risk of CVE-2026-19987?
To mitigate the risk of CVE-2026-19987, it is recommended to restrict directory listing and properly configure server permissions.