CVE-2025-10601: SourceCodester Online Exam Form Submission index.php sql injection
A vulnerability has been found in SourceCodester Online Exam Form Submission 1.0. Affected is an unknown function of the file /admin/index.php. Such manipulation of the argument email leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-10601?
CVE-2025-10601 is considered a high-severity vulnerability due to its potential for SQL injection attacks.
How do I fix CVE-2025-10601?
To fix CVE-2025-10601, sanitize and validate all user inputs to prevent SQL injection in the affected /admin/index.php file.
What type of vulnerability is CVE-2025-10601?
CVE-2025-10601 is a SQL injection vulnerability that allows remote attackers to manipulate database queries.
Which software is affected by CVE-2025-10601?
CVE-2025-10601 affects SourceCodester Online Exam Form Submission version 1.0.
What is the attack vector for CVE-2025-10601?
The attack vector for CVE-2025-10601 is remote, allowing attackers to exploit the vulnerability over the internet.