CVE-2025-4912 | SourceCodester Student Result Management System 1.0 Image File update_student.php old_photo path traversal
A vulnerability has been found in SourceCodester Student Result Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/core/update_student.php of the component Image File Handler. The manipulation of the argument old_photo leads to path traversal.
This vulnerability is known as CVE-2025-4912. The attack can be launched remotely. Furthermore, there is an exploit available.