CNNVD-202506-3708 Information

CNNVD ID

CNNVD-202506-3708

CVE-2025-6870

  • CNNVD Published: 2025-06-29

Description (Chinese)

SourceCodester Simple Company Website是SourceCodester公司的一个简单公司网站。 SourceCodester Simple Company Website 1.0版本存在安全漏洞,该漏洞源于对文件/classes/Content.php?f=service中参数img的错误操作导致无限制上传。

Description (English)

SourceCodester Simple Company Website is a simple corporate website ofourceCodester. The security loophole in version 1.0 of SourceCodester Simple Company Website results from an error of action on the parameter Img in file/classes/Contant.php?f=service leading to unlimited upload.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

SourceCodester

Published

2025-06-29

Last Modified

2026-02-24

References

https://access.redhat.com/security/cve/cve-2025-6870 https://nvd.nist.gov/vuln/detail/CVE-2025-6870

Share on: