5.3
/ 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Description
A security flaw has been discovered in Campcodes School Fees Payment Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /ajax.php?action=delete_payment. Performing manipulation of the argument ID results in sql injection. The attack is possible to be carried out remotely. The exploit has been released to the public and may be exploited.
Basic Information
ID
CVE-2025-13273
Source
VulDB
Published
Nov 17, 2025 at 09:32
Affected Product
Vendor
Campcodes
Product
School Fees Payment Management System
Version
1.0
Affected Versions
Campcodes School Fees Payment Management System 1.0