CVE-2025-14967

A vulnerability was identified in itsourcecode Student Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /candidates_report.php. The manipulation of the argument school_year leads to sql injection. The attack can be initiated remotely. The exploit is publi...

high 7.3 CVSS 3.1
Published: Dec 19, 2025
Modified: Dec 24, 2025
Vendor: Angeljudesuarez
Product: Student Management System
Versions: 1.0

Description

A vulnerability was identified in itsourcecode Student Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /candidates_report.php. The manipulation of the argument school_year leads to sql injection. The attack can be initiated remotely. The exploit is publicly available and might be used.

References

Related CVEs