Metrics
Affected Vendors & Products
Fri, 10 Oct 2025 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:zerowdd:studentmanager:1.0:*:*:*:*:*:*:* |
Mon, 06 Jan 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sun, 05 Jan 2025 08:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability, which was classified as critical, was found in ZeroWdd studentmanager 1.0. Affected is the function addTeacher/editTeacher of the file src/main/Java/com/wdd/studentmanager/controller/TeacherController. java. The manipulation of the argument file leads to unrestricted upload. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. | |
| Title | ZeroWdd studentmanager TeacherController. java editTeacher unrestricted upload | |
| Weaknesses | CWE-284 CWE-434 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-01-05T08:00:12.439Z
Updated: 2025-01-06T15:58:47.645Z
Reserved: 2025-01-04T09:26:27.679Z
Link: CVE-2024-13134
Updated: 2025-01-06T15:58:36.295Z
Status : Analyzed
Published: 2025-01-05T08:15:05.443
Modified: 2025-10-10T17:41:39.927
Link: CVE-2024-13134
No data.
ReportizFlow