CVE-2025-2652

A vulnerability has been found in SourceCodester Employee and Visitor Gate Pass Logging System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to exposure of information through directory listing. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. It is recommended to change the configuration settings. Multiple sub-directories are affected.
Configurations

Configuration 1 (hide)

cpe:2.3:a:oretnom23:employee_and_visitor_gate_pass_logging_system:1.0:*:*:*:*:*:*:*

History

26 Mar 2025, 15:16

Type Values Removed Values Added
Summary
  • (es) Se ha detectado una vulnerabilidad en SourceCodester Employee and Visitor Gate Pass Logging System 1.0, clasificada como problemática. Esta vulnerabilidad afecta a una funcionalidad desconocida. La manipulación expone información a través de listados de directorios. El ataque puede ejecutarse remotamente. Se ha hecho público el exploit y puede que sea utilizado. Se recomienda cambiar la configuración. Varios subdirectorios están afectados.
CPE cpe:2.3:a:oretnom23:employee_and_visitor_gate_pass_logging_system:1.0:*:*:*:*:*:*:*
First Time Oretnom23 employee And Visitor Gate Pass Logging System
Oretnom23
References () https://github.com/happytraveller-alone/cve/blob/main/dir.md - () https://github.com/happytraveller-alone/cve/blob/main/dir.md - Exploit
References () https://vuldb.com/?ctiid.300667 - () https://vuldb.com/?ctiid.300667 - Permissions Required, VDB Entry
References () https://vuldb.com/?id.300667 - () https://vuldb.com/?id.300667 - Permissions Required, VDB Entry
References () https://vuldb.com/?submit.519876 - () https://vuldb.com/?submit.519876 - Third Party Advisory, VDB Entry
References () https://www.sourcecodester.com/ - () https://www.sourcecodester.com/ - Product

24 Mar 2025, 13:15

Type Values Removed Values Added
References () https://github.com/happytraveller-alone/cve/blob/main/dir.md - () https://github.com/happytraveller-alone/cve/blob/main/dir.md -

23 Mar 2025, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-23 15:15

Updated : 2025-03-26 15:16


NVD link : CVE-2025-2652

Mitre link : CVE-2025-2652

CVE.ORG link : CVE-2025-2652


JSON object : View

Products Affected

oretnom23

  • employee_and_visitor_gate_pass_logging_system
CWE
CWE-548

Exposure of Information Through Directory Listing

CWE-552

Files or Directories Accessible to External Parties