5.3
/ 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Description
A vulnerability was identified in SourceCodester Student Grading System 1.0. Affected by this vulnerability is an unknown functionality of the file /view_user.php. Such manipulation of the argument ID leads to sql injection. It is possible to launch the attack remotely. The exploit is publicly available and might be used.
Basic Information
ID
CVE-2025-10407
Source
VulDB
Published
Sep 14, 2025 at 19:32
Affected Product
Vendor
SourceCodester
Product
Student Grading System
Version
1.0
Affected Versions
SourceCodester Student Grading System 1.0