CNNVD-202507-667 Information

CNNVD ID

CNNVD-202507-667

CVE-2025-7124

  • CNNVD Published: 2025-07-07

Description (Chinese)

Code-Projects Online Note Sharing是Code-Projects开源的一个在线笔记共享软件。 Code-Projects Online Note Sharing 1.0版本存在代码问题漏洞,该漏洞源于文件/dashboard/userprofile.php中参数image处理不当,可能导致任意文件上传。

Description (English)

Code-Projects Online Note Sharing is an online notes-sharing software open to Code-Projects. Code-project Online Note Share 1.0 has a code-issue loophole, which stems from the mishandling of the parameter image in the file/dashboard/userprofile.php, which may lead to any upload.

Hazard Level

High

Vulnerability Type

代码问题

Affected Vendor

Code-Projects

Published

2025-07-07

Last Modified

2026-02-24

References

https://vuldb.com/?id.315036 https://code-projects.org/ https://vuldb.com/?ctiid.315036 https://github.com/yihaofuweng/cve/issues/2 https://vuldb.com/?submit.605925 https://access.redhat.com/security/cve/cve-2025-7124

Share on: