PT-2026-47008 · Code Projects · Vehicle Management System
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
code-projects Vehicle Management System version 1.0
Description
An unrestricted file upload issue exists within the New Driver Registration Form component in the file 'newdriver.php'. A remote attacker can achieve this by manipulating the
photo argument, allowing the upload of unauthorized files.Recommendations
Update code-projects Vehicle Management System to a version that resolves this issue. As a temporary workaround, restrict access to the 'newdriver.php' file or the New Driver Registration Form component.
Exploit
Fix
Improper Access Control
Unrestricted File Upload
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Vehicle Management System