CVE-2023-5925: Campcodes Simple Student Information System Master.php sql injection
A vulnerability, which was classified as critical, has been found in Campcodes Simple Student Information System 1.0. This issue affects some unknown processing of the file /classes/Master.php. The manipulation of the argument f leads to sql injection. The exploit has been disclosed to the public and may be used. The identifier VDB-244325 was assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-5925?
CVE-2023-5925 is a critical SQL injection vulnerability found in Campcodes Simple Student Information System 1.0.
What software is affected by CVE-2023-5925?
Campcodes Simple Student Information System 1.0 is affected by CVE-2023-5925.
What is the severity of CVE-2023-5925?
CVE-2023-5925 has a high severity rating of 7.5 (Critical).
How does CVE-2023-5925 work?
CVE-2023-5925 allows an attacker to execute arbitrary SQL commands through a manipulated 'f' argument in the Master.php file of the affected software.
How can I fix CVE-2023-5925?
To fix CVE-2023-5925, it is recommended to update Campcodes Simple Student Information System to a patched version that addresses the SQL injection vulnerability.