PT-2025-31044 · Code Projects · Exam Form Submission

Dzgb

·

Published

2025-07-28

·

Updated

2025-07-28

·

CVE-2025-8255

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions code-projects Exam Form Submission version 1.0
Description A vulnerability exists in code-projects Exam Form Submission 1.0 related to unrestricted file upload. The issue affects the processing of the /register.php file. Manipulation of the image argument allows for unrestricted upload, and the attack can be initiated remotely. The exploit has been publicly disclosed.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Access Control

Unrestricted File Upload

Weakness Enumeration

Related Identifiers

CVE-2025-8255

Affected Products

Exam Form Submission