Sourcecodester Covid-19 Contact Tracing System 1.0 is vulnerable to RCE (Remote Code Execution). The application receives a reverse shell (php) into imagem of the user enabling RCE.
Metrics
Affected Vendors & Products
References
History
Thu, 22 Jan 2026 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Covid-19 Contact Tracing System Project
Covid-19 Contact Tracing System Project covid-19 Contact Tracing System |
|
| CPEs | cpe:2.3:a:covid-19_contact_tracing_system_project:covid-19_contact_tracing_system:1.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Covid-19 Contact Tracing System Project
Covid-19 Contact Tracing System Project covid-19 Contact Tracing System |
Mon, 12 Jan 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-434 | |
| Metrics |
cvssV3_1
|
Mon, 12 Jan 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Sourcecodester Covid-19 Contact Tracing System 1.0 is vulnerable to RCE (Remote Code Execution). The application receives a reverse shell (php) into imagem of the user enabling RCE. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-01-12T19:37:06.392Z
Reserved: 2025-12-08T00:00:00.000Z
Link: CVE-2025-66802
Updated: 2026-01-12T19:36:31.634Z
Status : Analyzed
Published: 2026-01-12T20:15:53.060
Modified: 2026-01-22T15:56:20.700
Link: CVE-2025-66802
No data.