CVE-2025-13349: SourceCodester Student Grades Management System Add New Grade grades.php cross site scripting
A vulnerability has been found in SourceCodester Student Grades Management System 1.0. This issue affects some unknown processing of the file /grades.php of the component Add New Grade Page. The manipulation of the argument Remarks leads to cross site scripting. Remote exploitation of the attack is possible. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-13349?
The severity of CVE-2025-13349 is classified as high due to its potential for remote exploitation through cross-site scripting.
How do I fix CVE-2025-13349?
To fix CVE-2025-13349, you should sanitize and validate user inputs on the /grades.php page to prevent cross-site scripting attacks.
What systems are affected by CVE-2025-13349?
CVE-2025-13349 affects the SourceCodester Student Grades Management System version 1.0.
What type of vulnerability is CVE-2025-13349?
CVE-2025-13349 is a cross-site scripting vulnerability that exploits the Remarks argument in the Add New Grade Page.
Can CVE-2025-13349 be exploited remotely?
Yes, CVE-2025-13349 can be exploited remotely, allowing attackers to execute scripts in users' browsers.