CVE-2025-13564
BaseFortify
Publication date: 2025-11-23
Last updated on: 2026-04-29
Assigner: VulDB
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| kimz190 | pre-school_management_system | 1.0 |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-404 | The product does not release or incorrectly releases a resource before it is made available for re-use. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability is a security flaw in the SourceCodester Pre-School Management System 1.0, specifically in the removefile function of the app/controllers/FilehelperController.php file. By manipulating the filepath argument, an attacker can cause a denial of service. The attack can be performed remotely, and an exploit has been publicly released.
How can this vulnerability impact me? :
The vulnerability can lead to a denial of service condition, which means that the affected system or application could become unavailable or unresponsive. This could disrupt normal operations and potentially affect users relying on the system.