A Remote Code Execution (RCE) vulnerability exists in Code Astro Internet Banking System 2.0.0 due to improper file upload validation in the profile_pic parameter within pages_view_client.php.
References
| Link | Resource |
|---|---|
| https://github.com/b1tm4r/CVE-2025-29017 | Exploit |
Configurations
History
No history.
Information
Published : 2025-04-10 14:15
Updated : 2025-04-30 16:40
NVD link : CVE-2025-29017
Mitre link : CVE-2025-29017
CVE.ORG link : CVE-2025-29017
JSON object : View
Products Affected
codeastro
- internet_banking_system
CWE
CWE-434
Unrestricted Upload of File with Dangerous Type
