CVE-2025-14582

Publication date

2025-12-12 22:02:07

Family

VulDB

State

PUBLISHED

Description

A vulnerability was detected in campcodes Online Student Enrollment System 1.0. This affects an unknown function of the file /admin/index.php?page=user-profile. Performing manipulation of the argument userphoto results in unrestricted upload. The attack can be initiated remotely. The exploit is now public and may be used.