CVE-2025-14195
EUVD-2025-20160407.12.2025, 15:15
A security flaw has been discovered in code-projects Employee Profile Management System 1.0. Impacted is an unknown function of the file /profiling/add_file_query.php. The manipulation of the argument per_file results in unrestricted upload. The attack may be launched remotely. The exploit has been released to the public and may be used for attacks.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| carmelogarcia | employee_profile_management_system | 1.0 |
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| code-projects | employee_profile_management_system | 1.0 | CNA |
Common Weakness Enumeration