Metrics
Affected Vendors & Products
Tue, 25 Nov 2025 11:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Code-projects
Code-projects online Bidding System |
|
| Vendors & Products |
Code-projects
Code-projects online Bidding System |
Mon, 24 Nov 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 24 Nov 2025 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A weakness has been identified in code-projects Online Bidding System 1.0. This issue affects the function categoryadd of the file /administrator/addcategory.php. This manipulation of the argument catimage causes unrestricted upload. The attack is possible to be carried out remotely. The exploit has been made available to the public and could be exploited. | |
| Title | code-projects Online Bidding System addcategory.php categoryadd unrestricted upload | |
| Weaknesses | CWE-284 CWE-434 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-11-24T00:02:06.854Z
Updated: 2025-11-24T17:37:38.291Z
Reserved: 2025-11-23T07:48:07.181Z
Link: CVE-2025-13574
Updated: 2025-11-24T17:37:34.180Z
Status : Awaiting Analysis
Published: 2025-11-24T00:15:46.287
Modified: 2025-11-25T22:16:42.557
Link: CVE-2025-13574
No data.