6.9
/ 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Description
A vulnerability has been found in code-projects Simple Scheduling System 1.0. This vulnerability affects unknown code of the file /schedulingsystem/addfaculty.php. Such manipulation of the argument falname leads to sql injection. The attack can be executed remotely. The exploit has been disclosed to the public and may be used.
Basic Information
ID
CVE-2025-11106
Source
VulDB
Published
Sep 28, 2025 at 14:02
Affected Product
Vendor
code-projects
Product
Simple Scheduling System
Version
1.0
Affected Versions
code-projects Simple Scheduling System 1.0