CVE-2025-5299 – SourceCodester Client Database Management System Unrestricted File Upload Vulnerability
CVE ID : CVE-2025-5299
Published : May 28, 2025, 12:15 p.m. | 1 hour, 28 minutes ago
Description : A vulnerability was found in SourceCodester Client Database Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /user_order_customer_update.php. The manipulation of the argument uploaded_file_cancelled leads to unrestricted upload. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
Severity: 7.3 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more…