CVE-2025-13245
- EPSS 0.03%
- Veröffentlicht 16.11.2025 09:02:05
- Zuletzt bearbeitet 19.11.2025 13:17:39
A vulnerability was identified in code-projects Student Information System 2.0. The impacted element is an unknown function of the file /editprofile.php. Such manipulation leads to cross site scripting. It is possible to launch the attack remotely. T...
CVE-2025-13244
- EPSS 0.03%
- Veröffentlicht 16.11.2025 08:32:05
- Zuletzt bearbeitet 19.11.2025 13:17:53
A vulnerability was determined in code-projects Student Information System 2.0. The affected element is an unknown function of the file /register.php. This manipulation causes cross site scripting. It is possible to initiate the attack remotely. The ...
CVE-2025-13243
- EPSS 0.03%
- Veröffentlicht 16.11.2025 08:02:05
- Zuletzt bearbeitet 19.11.2025 13:18:04
A vulnerability was found in code-projects Student Information System 2.0. Impacted is an unknown function of the file /editprofile.php. The manipulation results in sql injection. The attack may be performed from remote. The exploit has been made pub...
CVE-2025-13242
- EPSS 0.03%
- Veröffentlicht 16.11.2025 07:32:07
- Zuletzt bearbeitet 19.11.2025 13:18:14
A vulnerability has been found in code-projects Student Information System 2.0. This issue affects some unknown processing of the file /register.php. The manipulation leads to sql injection. The attack is possible to be carried out remotely. The expl...
CVE-2025-13241
- EPSS 0.03%
- Veröffentlicht 16.11.2025 07:02:07
- Zuletzt bearbeitet 19.11.2025 13:18:23
A flaw has been found in code-projects Student Information System 2.0. This vulnerability affects unknown code of the file /index.php. Executing manipulation of the argument Username can lead to sql injection. The attack can be executed remotely. The...
CVE-2025-13240
- EPSS 0.03%
- Veröffentlicht 16.11.2025 06:32:05
- Zuletzt bearbeitet 19.11.2025 13:18:32
A vulnerability was detected in code-projects Student Information System 2.0. This affects an unknown part of the file /searchquery.php. Performing manipulation of the argument s results in sql injection. Remote exploitation of the attack is possible...