CVE-2018-25409 | Simpkh SIM-PKH 2.4.1 PHP File aksi_pengurus.php fupload unrestricted upload (Exploit 45659 / EUVD-2018-21931)
A vulnerability, which was classified as critical, was found in Simpkh SIM-PKH 2.4.1. Affected is an unknown function of the file aksi_pengurus.php of the component PHP File Handler. Executing a manipulation of the argument fupload can lead to unrestricted upload.
This vulnerability is tracked as CVE-2018-25409. The attack can be launched remotely. Moreover, an exploit is present.