A vulnerability classified as problematic was found in code-projects Employee Profile Management System 1.0. This vulnerability affects unknown code of the file download.php. The manipulation of the argument download_file leads to path traversal: '../filedir'. The exploit has been disclosed to the public and may be used. VDB-250570 is the identifier assigned to this vulnerability.
2024-01-12T19:15:12.577
2024-11-21T08:46:38.787
Modified
CVSSv3.1: 3.5 (LOW)
AV:A/AC:L/Au:S/C:P/I:N/A:N
5.1
2.9
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | code-projects | employee_profile_management_system | 1.0 | Yes |