Unrestricted File Upload Vulnerability in JP Students Result Management System by joy2012bd
CVE-2025-31916

9CRITICAL

What is CVE-2025-31916?

The JP Students Result Management System Premium by joy2012bd is susceptible to an unrestricted file upload vulnerability. This flaw allows an attacker to upload malicious files, such as web shells, to the web server, potentially granting unauthorized access and control. Versions from 1.1.7 and later are affected, making it crucial for users to implement security measures to mitigate the risks associated with this vulnerability.

Affected Version(s)

JP Students Result Management System Premium 1.1.7

References

CVSS V3.1

Score:
9
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

CĂşt lá»™n xĂ o me (Patchstack Alliance)
.
CVE-2025-31916 : Unrestricted File Upload Vulnerability in JP Students Result Management System by joy2012bd