CVE-2025-22923
02.04.2025, 21:15
An issue in OS4ED openSIS v8.0 through v9.1 allows attackers to execute a directory traversal and delete files by sending a crafted POST request to /Modules.php?modname=users/Staff.php&removefile.
Vendor | Product | Version |
---|---|---|
os4ed | opensis | 8.0 ≤ 𝑥 ≤ 9.1 |
𝑥
= Vulnerable software versions