6.9
/ 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Description
A vulnerability has been found in itsourcecode Student Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /newsubject.php. The manipulation of the argument sub leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Basic Information
ID
CVE-2025-14258
Source
VulDB
Published
Dec 8, 2025 at 17:32
Affected Product
Vendor
itsourcecode
Product
Student Management System
Version
1.0
Affected Versions
itsourcecode Student Management System 1.0