CNNVD-202511-2588 Information

CNNVD ID

CNNVD-202511-2588

CVE-2025-13573

  • CNNVD Published: 2025-11-24

Description (Chinese)

Projectworlds Advanced Library Management System是印度Projectworlds公司的一个先进的图书馆管理系统。 Projectworlds Advanced Library Management System 1.0及之前版本存在代码问题漏洞,该漏洞源于文件/add_book.php中参数image的错误操作,可能导致无限制上传。

Description (English)

Projectworlds Advanced Library Management Systems is an advanced library management system for Projectworlds in India. Projectworlds Advanced Library Management System 1.0 and previous versions had a code problem loophole, which stemmed from the error of the parameter image in the file/add book.php, which could lead to unlimited upload.

Hazard Level

High

Vulnerability Type

代码问题

Affected Vendor

Projectworlds

Published

2025-11-24

Last Modified

2026-02-24

References

https://vuldb.com/?ctiid.333337 https://github.com/GYSakura/tmp75/blob/main/report.md https://vuldb.com/?submit.698646 https://vuldb.com/?id.333337 https://access.redhat.com/security/cve/cve-2025-13573

Share on: