SEPTEMBER 19, 2026
Live Feed
Back to database
Case File

CVE-2026-19987

MEDIUM · CVSS 5.3 EPSS 0.31%

Source: NVD + CISA KEV + EPSS · Published 2026-08-17 · Last synced 2026-09-16

CyberRota Analysis

AI-Generated

The SourceCodester Best Employee Management System 1.0 is vulnerable due to improper handling of the /assets/uploadImage/Profile/ directory, allowing remote attackers to exploit this flaw and gain unauthorized access to sensitive information through directory listing. Organizations using this system should prioritize remediation to prevent potential data exposure and maintain the integrity of their employee management processes.

CVE
CVE-2026-19987
Severity
MEDIUM
CVSS
5.3
EPSS
0.31%

Original NVD Description

A security vulnerability has been detected in SourceCodester Best Employee Management System 1.0. This affects an unknown function of the file /assets/uploadImage/Profile/. Such manipulation leads to exposure of information through directory listing. It is possible to launch the attack remotely.