CVE-2025-64070
- EPSS 0.17%
- Veröffentlicht 02.12.2025 00:00:00
- Zuletzt bearbeitet 03.12.2025 20:13:03
Sourcecodester Student Grades Management System v1.0 is vulnerable to Cross Site Scripting (XSS) in the Add New Subject Description field.
CVE-2025-13349
- EPSS 0.22%
- Veröffentlicht 18.11.2025 14:02:06
- Zuletzt bearbeitet 29.04.2026 01:00:01
A vulnerability has been found in SourceCodester Student Grades Management System 1.0. This issue affects some unknown processing of the file /grades.php of the component Add New Grade Page. The manipulation of the argument Remarks leads to cross sit...
CVE-2025-63892
- EPSS 0.35%
- Veröffentlicht 18.11.2025 00:00:00
- Zuletzt bearbeitet 20.11.2025 21:51:15
A vulnerability was determined in SourceCodester Student Grades Management System 1.0. Affected is the function create_classroom of the file /classroom.php of the component My Classrooms Management Page. This manipulation of the argument name/descrip...
CVE-2025-12332
- EPSS 0.34%
- Veröffentlicht 27.10.2025 23:22:09
- Zuletzt bearbeitet 29.04.2026 01:00:01
A flaw has been found in SourceCodester Student Grades Management System 1.0. This affects the function delete_user of the file /admin.php. Executing manipulation can lead to cross site scripting. The attack may be performed from remote. The exploit ...
CVE-2025-11485
- EPSS 0.27%
- Veröffentlicht 08.10.2025 17:15:33
- Zuletzt bearbeitet 29.04.2026 01:00:01
A vulnerability was determined in SourceCodester Student Grades Management System 1.0. Affected is the function add_user of the file /admin.php of the component Manage Users Page. This manipulation of the argument first_name/last_name causes cross si...