Security Advisory

CVE-2025-12378

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-10-28 05:32:05
Last updated 2025-10-28 13:30:09
Assigner VulDB
State PUBLISHED

Description

A security flaw has been discovered in code-projects Simple Food Ordering System 1.0. This issue affects some unknown processing of the file /addproduct.php. Performing manipulation of the argument photo results in unrestricted upload. The attack may be initiated remotely. The exploit has been released to the public and may be exploited.