ZeroHour

CVE-2025-56295

PoC
CVSS 3.1
7.3 high
EPSS
<1%p24
Published
()
Modified
Description

code-projects Computer Laboratory System 1.0 has a file upload vulnerability. Staff can upload malicious files by uploading PHP backdoor files when modifying personal avatar information and use web shell connection tools to obtain server permissions.

Vendors
carmelo
Products
computer laboratory system
Weakness
CWE-434
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:N

In the news

No ingested article mentions this CVE yet.