6.9
/ 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Description
A vulnerability was identified in code-projects Assessment Management 1.0. This affects an unknown part of the file login.php. Such manipulation of the argument userid leads to sql injection. The attack can be launched remotely. The exploit is publicly available and might be used.
Basic Information
ID
CVE-2025-15196
Source
VulDB
Published
Dec 29, 2025 at 16:32
Affected Product
Vendor
code-projects
Product
Assessment Management
Version
1.0
Affected Versions
code-projects Assessment Management 1.0