PT-2025-23078 · Sourcecodester · Sourcecodester Computer Store System

Wanglun

·

Published

2025-05-28

·

Updated

2025-06-11

·

CVE-2025-5297

CVSS v3.1

6.6

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:H
Name of the Vulnerable Software and Affected Versions SourceCodester Computer Store System version 1.0
Description A critical issue has been found in the SourceCodester Computer Store System. This issue affects the function Add of the file main.c. The manipulation of the argument laptopcompany/RAM/Processor leads to a stack-based buffer overflow. An attack must be approached locally.
Recommendations For SourceCodester Computer Store System version 1.0, as a temporary workaround, consider disabling the Add function until a patch is available. Restrict access to the main.c file to minimize the risk of exploitation. Avoid using the argument laptopcompany/RAM/Processor in the affected function until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Memory Corruption

Stack Overflow

Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2025-5297

Affected Products

Sourcecodester Computer Store System