CVE-2022-30375
MEDIUMSimple Social Networking Site 1.0 - Unauthenticated Arbitrary File Deletion via Master.php delete_img Parameter
Title source: llmDescription
Sourcecodester Simple Social Networking Site v1.0 is vulnerable to file deletion via /sns/classes/Master.php?f=delete_img.
References (1)
Core 1
Core References
Exploit, Third Party Advisory x_refsource_misc
https://github.com/k0xx11/bug_report/blob/main/vendors/oretnom23/simple-social-networking-site/delet-file-1.md
Scores
CVSS v3
6.5
EPSS
0.0081
EPSS Percentile
52.2%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H
Details
CWE
CWE-276
Status
published
Products (1)
simple_social_networking_site_project/simple_social_networking_site
1.0
Published
May 13, 2022
Tracked Since
Feb 18, 2026