SourceCodester Student Result Management System Classes Page classes cross site scripting

CVE Details

Basic Information

Title SourceCodester Student Result Management System Classes Page classes cross site scripting
Type cve
Published 2025-06-06T05:00:19.576Z
Last Seen

Product Information

Vendor SourceCodester
Product Student Result Management System
Version 1.0

CVSS Information

Base Score 4.8 (MEDIUM)
Attack Vector CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:P
Confidentiality Impact
Integrity Impact
Availability Impact

AI Analysis

AI Description The vulnerability allows remote attackers to inject malicious scripts into the Class Name field on the Classes Page of the Student Result Management System, potentially compromising user accounts or stealing sensitive information.
AI Severity Medium
Vendor SourceCodester
Product Student Result Management System
Affected Version 1.0

Affected Products

  • SourceCodester Student Result Management System 1.0

Additional Information

CVE List
CWE List CWE-79, CWE-94
Bulletin Family

Description

A vulnerability was found in SourceCodester Student Result Management System 1.0 and classified as problematic. This issue affects some unknown processing of the file /script/academic/classes of the component Classes Page. The manipulation of the argument Class Name leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.