A vulnerability has been found in SourceCodester Pisay Online E-Learning System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /lesson/controller.php. The manipulation of the argument file leads to unrestricted upload. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-262489 was assigned to this vulnerability.
History

Tue, 29 Apr 2025 20:45:00 +0000

Type Values Removed Values Added
First Time appeared Donbermoy
Donbermoy pisay Online E-learning System
CPEs cpe:2.3:a:donbermoy:pisay_online_e-learning_system:1.0:*:*:*:*:*:*:*
Vendors & Products Donbermoy
Donbermoy pisay Online E-learning System

Wed, 05 Feb 2025 22:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published: 2024-04-30T23:00:05.816Z

Updated: 2025-02-05T21:15:31.706Z

Reserved: 2024-04-30T14:20:05.744Z

Link: CVE-2024-4349

cve-icon Vulnrichment

Updated: 2024-08-01T20:40:46.488Z

cve-icon NVD

Status : Analyzed

Published: 2024-04-30T23:15:07.020

Modified: 2025-04-29T20:22:10.940

Link: CVE-2024-4349

cve-icon Redhat

No data.