A vulnerability, which was classified as problematic, was found in SourceCodester Online Eyewear Shop 1.0. Affected is an unknown function of the file /oews/admin/. The manipulation leads to exposure of information through directory listing. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. It is recommended to change the configuration settings. Multiple sub-directories are affected.
References
| Link | Resource |
|---|---|
| https://github.com/happytraveller-alone/cve/blob/main/Directory%20Traversal%20Vulnerability.md | Exploit Third Party Advisory |
| https://vuldb.com/?ctiid.300666 | Permissions Required VDB Entry |
| https://vuldb.com/?id.300666 | Third Party Advisory VDB Entry |
| https://vuldb.com/?submit.519873 | Third Party Advisory VDB Entry |
| https://www.sourcecodester.com/ | Product |
Configurations
History
No history.
Information
Published : 2025-03-23 15:15
Updated : 2025-05-14 21:19
NVD link : CVE-2025-2651
Mitre link : CVE-2025-2651
CVE.ORG link : CVE-2025-2651
JSON object : View
Products Affected
oretnom23
- online_eyewear_shop
