CVE-2025-13581: itsourcecode Student Information System schedule_edit1.php sql injection
A vulnerability was identified in itsourcecode Student Information System 1.0. Affected by this vulnerability is an unknown functionality of the file /scheduleedit1.php. Such manipulation of the argument scheduleid leads to sql injection. The attack may be launched remotely. The exploit is publicly available and might be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-13581?
CVE-2025-13581 has a high severity rating due to the potential for remote SQL injection attacks.
How do I fix CVE-2025-13581?
To fix CVE-2025-13581, ensure that user inputs are properly sanitized and validated before processing in the /schedule_edit1.php file.
What software is affected by CVE-2025-13581?
CVE-2025-13581 affects itsourcecode Student Information System version 1.0.
Can CVE-2025-13581 be exploited remotely?
Yes, CVE-2025-13581 can be exploited remotely through the manipulation of the schedule_id parameter.
What type of attack can CVE-2025-13581 facilitate?
CVE-2025-13581 can facilitate SQL injection attacks, potentially compromising the database.