A Shell Upload vulnerability in Tourism Management System 2.0 allows an attacker to upload and execute arbitrary PHP shell scripts on the server, leading to remote code execution and unauthorized access to the system. This can result in the compromise of sensitive data and system functionality.
References
Configurations
No configuration.
History
22 Sep 2025, 16:15
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-434 | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.2 |
10 Sep 2025, 17:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-09-10 17:15
Updated : 2025-09-22 16:15
NVD link : CVE-2025-57642
Mitre link : CVE-2025-57642
CVE.ORG link : CVE-2025-57642
JSON object : View
Products Affected
No product.
CWE
CWE-434
Unrestricted Upload of File with Dangerous Type