A vulnerability was found in code-projects Student Crud Operation up to 3.3. This vulnerability affects the function move_uploaded_file of the file add.php of the component Add Student Page/Edit Student Page. Performing manipulation results in unrestricted upload. The attack can be initiated remotely. The exploit has been made public and could be used.
Metrics
Affected Vendors & Products
References
History
Mon, 06 Oct 2025 22:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was found in code-projects Student Crud Operation up to 3.3. This vulnerability affects the function move_uploaded_file of the file add.php of the component Add Student Page/Edit Student Page. Performing manipulation results in unrestricted upload. The attack can be initiated remotely. The exploit has been made public and could be used. | |
Title | code-projects Student Crud Operation Add Student Page/Edit Student add.php move_uploaded_file unrestricted upload | |
Weaknesses | CWE-284 CWE-434 |
|
References |
|
|
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-10-07T02:48:36.596Z
Reserved: 2025-10-06T06:19:12.738Z
Link: CVE-2025-11347

No data.

Status : Received
Published: 2025-10-07T03:15:33.600
Modified: 2025-10-07T03:15:33.600
Link: CVE-2025-11347

No data.

No data.