CVE-2025-0527: code-projects Admission Management System signupconfirm.php sql injection
A vulnerability classified as critical was found in code-projects Admission Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /signupconfirm.php. The manipulation of the argument ineml leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-0527?
CVE-2025-0527 is classified as a critical vulnerability due to its potential for SQL injection attacks.
How does CVE-2025-0527 allow for SQL injection?
CVE-2025-0527 allows SQL injection through manipulation of the 'in_eml' argument in the /signupconfirm.php file.
Which software versions are affected by CVE-2025-0527?
CVE-2025-0527 affects the Admission Management System 1.0 by code-projects.
How can I mitigate the risks associated with CVE-2025-0527?
Mitigation of CVE-2025-0527 can be achieved by sanitizing user input and validating the 'in_eml' field to prevent SQL injection.
Is there a patch available for CVE-2025-0527?
As of now, there is no specific patch released for CVE-2025-0527, so immediate remediation is advised.