CVE-2025-2652

Severity
6.9MEDIUM
EPSS
0.1%
top 73.06%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 23

Description

A vulnerability has been found in SourceCodester Employee and Visitor Gate Pass Logging System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to exposure of information through directory listing. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. It is recommended to change the configuration settings. Multiple sub-directories are affected.

CVSS vector

CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N

🔴Vulnerability Details

2
GHSA
GHSA-7xpg-wg42-pgpg: A vulnerability has been found in SourceCodester Employee and Visitor Gate Pass Logging System 12025-03-23
CVEList
SourceCodester Employee and Visitor Gate Pass Logging System exposure of information through directory listing2025-03-23
CVE-2025-2652 (MEDIUM CVSS 6.9) | A vulnerability has been found in S | cvebase.io