CVE-2025-14203: code-projects Question Paper Generator selectquestionuser.php sql injection
A flaw has been found in code-projects Question Paper Generator up to 1.0. This vulnerability affects unknown code of the file /selectquestionuser.php. This manipulation of the argument subid causes sql injection. Remote exploitation of the attack is possible. The exploit has been published and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-14203?
CVE-2025-14203 is classified as a medium severity vulnerability due to its potential for SQL injection exploitation.
How do I fix CVE-2025-14203?
To fix CVE-2025-14203, update the Code-projects Question Paper Generator to a version greater than 1.0 and ensure input parameters are sanitized.
What type of vulnerability is CVE-2025-14203?
CVE-2025-14203 is an SQL injection vulnerability that allows attackers to manipulate database queries.
Can CVE-2025-14203 be exploited remotely?
Yes, CVE-2025-14203 can be exploited remotely without requiring physical access to the affected system.
Which software versions are affected by CVE-2025-14203?
CVE-2025-14203 affects all versions of the Code-projects Question Paper Generator up to and including version 1.0.