6.9
/ 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Description
A vulnerability was determined in code-projects Student File Management System 1.0. Affected by this issue is some unknown functionality of the file /admin/login_query.php. Executing manipulation of the argument Username can lead to sql injection. The attack may be launched remotely. The exploit has been publicly disclosed and may be utilized.
Basic Information
ID
CVE-2025-14620
Source
VulDB
Published
Dec 13, 2025 at 16:02
Affected Product
Vendor
code-projects
Product
Student File Management System
Version
1.0
Affected Versions
code-projects Student File Management System 1.0