CVE-2025-12263: code-projects Online Event Judging System edit_judge.php sql injection
A vulnerability was identified in code-projects Online Event Judging System 1.0. Affected is an unknown function of the file /editjudge.php. The manipulation of the argument judgeid leads to sql injection. The attack may be initiated remotely. The exploit is publicly available and might be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-12263?
CVE-2025-12263 is classified as a high severity vulnerability due to its potential for SQL injection.
How do I fix CVE-2025-12263?
To fix CVE-2025-12263, ensure proper input validation and parameterized queries are implemented in the affected function /edit_judge.php.
What kind of attack can be performed through CVE-2025-12263?
CVE-2025-12263 allows attackers to perform SQL injection attacks remotely.
Which systems are affected by CVE-2025-12263?
CVE-2025-12263 affects the Online Event Judging System 1.0 developed by code-projects.
Is there a known exploit for CVE-2025-12263?
Yes, an exploit for CVE-2025-12263 is publicly available.