6.9
/ 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Description
A security vulnerability has been detected in SourceCodester Online Student Result System 1.0. This issue affects some unknown processing of the file /view_result.php. The manipulation of the argument ID leads to sql injection. The attack is possible to be carried out remotely. The exploit has been disclosed publicly and may be used.
Basic Information
ID
CVE-2025-12257
Source
VulDB
Published
Oct 27, 2025 at 09:32
Affected Product
Vendor
SourceCodester
Product
Online Student Result System
Version
1.0
Affected Versions
SourceCodester Online Student Result System 1.0