CVE-2025-11417

⚪ Do wiadomości

Nieograniczony upload plików w Campcodes Advanced Online Voting Management System umożliwia zdalne ataki.

CVSS
6.3
EPSS
0.3%
Exploit
poc
Vendor
campcodes
Opis źródłowy (NVD)

A weakness has been identified in Campcodes Advanced Online Voting Management System 1.0. This vulnerability affects unknown code of the file /admin/voters_add.php. Executing manipulation of the argument photo can lead to unrestricted upload. The attack can be launched remotely. The exploit has been made available to the public and could be exploited.

exploit Brak patcha
Źródła i daty
ŹródłoWartość
NVD – CVSS6.3
CISA KEV (aktywnie wykorzystywane)Nie
FIRST EPSS (prawdopodobieństwo exploita)0.3%
Opublikowano (NVD)2025-10-08 00:15:32 UTC
Ostatnia modyfikacja (NVD)2026-10-08 13:10:00 UTC
Referencje