cve/2025/CVE-2025-56263.md
2025-09-29 21:09:30 +02:00

640 B

CVE-2025-56263

Description

by-night sms V1.0 has an Arbitrary File Upload vulnerability. The /api/sms/upload/headImg endpoint allows uploading arbitrary files. Users can upload files of any size and type.

POC

Reference

No PoCs from references.

Github