First published: Thu Jan 09 2025(Updated: )
A vulnerability was found in code-projects Admission Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file index.php of the component Login. The manipulation of the argument u_id leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Admission Management System | ||
Anisha Admission Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-0347 is classified as a critical severity vulnerability.
CVE-2025-0347 allows for SQL injection due to improper handling of the 'u_id' parameter in the index.php file.
To fix CVE-2025-0347, sanitize and validate all user inputs, particularly the 'u_id' parameter, to prevent SQL injection.
CVE-2025-0347 affects the Admission Management System 1.0.
Yes, successful exploitation of CVE-2025-0347 can lead to unauthorized access to sensitive data in the database.