CVE-2025-2652
CVSS 3.1 Score 8.3 of 10 (high)
Details
Summary
CVE-2025-2652 is a recently disclosed vulnerability affecting the SourceCodester Employee and Visitor Gate Pass Logging System 1.0. This issue poses a significant risk as an unknown functionality within the system allows for remote directory listing, exposing information to potential attackers. The vulnerability has already been made public, increasing the threat of exploitation. To mitigate the risk, it is strongly advised to modify the configuration settings. Unfortunately, multiple sub-directories within the system are believed to be affected, potentially expanding the attack surface.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Moodle
Affected Vendors
- Moodle