Unrestricted File Upload Vulnerability in JP Students Result Management System by joy2012bd
CVE-2025-31916
9CRITICAL
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 23 May 2025
What is CVE-2025-31916?
The JP Students Result Management System Premium by joy2012bd is susceptible to an unrestricted file upload vulnerability. This flaw allows an attacker to upload malicious files, such as web shells, to the web server, potentially granting unauthorized access and control. Versions from 1.1.7 and later are affected, making it crucial for users to implement security measures to mitigate the risks associated with this vulnerability.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
JP Students Result Management System Premium 1.1.7
References
CVSS V3.1
Score:
9
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Cút lộn xào me (Patchstack Alliance)