Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Mawenjie

#41175de 53,634
6.5CVSS total
Vulnerabilidades · 1
PT-2025-30936
6.5
2025-07-25
Unknown · Code-Projects Document Management System · CVE-2025-8171
**Name of the Vulnerable Software and Affected Versions** code-projects Document Management System version 1.0 **Description** A critical issue has been found in code-projects Document Management System that allows for unrestricted file upload through manipulation of the `uploaded file` argument in the `/insert.php` endpoint. The attack can be initiated remotely. The exploit has been publicly disclosed. **Recommendations** Address the unrestricted upload issue in the processing of the `/insert.php` file. Sanitize or validate the `uploaded file` argument to prevent malicious file uploads.