CVE-2022-30375

MEDIUM

Simple Social Networking Site 1.0 - Unauthenticated Arbitrary File Deletion via Master.php delete_img Parameter

Title source: llm
STIX 2.1

Description

Sourcecodester Simple Social Networking Site v1.0 is vulnerable to file deletion via /sns/classes/Master.php?f=delete_img.

Scores

CVSS v3 6.5
EPSS 0.0081
EPSS Percentile 52.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H

Details

CWE
CWE-276
Status published
Products (1)
simple_social_networking_site_project/simple_social_networking_site 1.0
Published May 13, 2022
Tracked Since Feb 18, 2026