CVE-2025-13583: code-projects Question Paper Generator POST Parameter signupscript.php sql injection
A weakness has been identified in code-projects Question Paper Generator 1.0. This affects an unknown part of the file /signupscript.php of the component POST Parameter Handler. Executing manipulation of the argument Fname can lead to sql injection. The attack can be executed remotely. The exploit has been made available to the public and could be exploited.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-13583?
The severity of CVE-2025-13583 is categorized as critical due to the potential for remote SQL injection attacks.
How do I fix CVE-2025-13583?
To fix CVE-2025-13583, validate and sanitize all user inputs in the /signupscript.php file to prevent SQL injection.
What systems are affected by CVE-2025-13583?
CVE-2025-13583 affects Code-projects Question Paper Generator version 1.0.
Can CVE-2025-13583 be exploited remotely?
Yes, CVE-2025-13583 can be exploited remotely by manipulating the Fname parameter.
What are the impacts of exploiting CVE-2025-13583?
Exploiting CVE-2025-13583 can lead to unauthorized access to the database, data manipulation, and potential data breaches.