CVE Vulnerabilities

CVE-2025-2652

Exposure of Information Through Directory Listing

Published: Mar 23, 2025 | Modified: Mar 26, 2025
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

A vulnerability has been found in SourceCodester Employee and Visitor Gate Pass Logging System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to exposure of information through directory listing. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. It is recommended to change the configuration settings. Multiple sub-directories are affected.

Weakness

A directory listing is inappropriately exposed, yielding potentially sensitive information to attackers.

Affected Software

Name Vendor Start Version End Version
Employee_and_visitor_gate_pass_logging_system Oretnom23 1.0 (including) 1.0 (including)

Potential Mitigations

References