CVE-2025-14623: code-projects Student File Management System update_student.php sql injection
A weakness has been identified in code-projects Student File Management System 1.0. This issue affects some unknown processing of the file /admin/updatestudent.php. This manipulation of the argument studid causes sql injection. The attack is possible to be carried out remotely. The exploit has been made available to the public and could be exploited.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-14623?
CVE-2025-14623 is classified as a high-severity vulnerability due to its remote SQL injection potential.
How do I fix CVE-2025-14623?
To fix CVE-2025-14623, validate and sanitize inputs in the /admin/update_student.php file to prevent SQL injection.
What software is affected by CVE-2025-14623?
CVE-2025-14623 affects the Code-projects Student File Management System version 1.0.
Can CVE-2025-14623 be exploited remotely?
Yes, CVE-2025-14623 can be exploited remotely, allowing attackers to manipulate the stud_id argument.
What is the impact of CVE-2025-14623 on data security?
CVE-2025-14623 can lead to unauthorized access to database information, potentially compromising sensitive student data.