First published: Tue Mar 04 2025(Updated: )
A vulnerability was found in code-projects Online Class and Exam Scheduling System 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /Scheduling/scheduling/pages/profile.php. The manipulation of the argument username leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
code-projects Online Class and Exam Scheduling System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-1955 has been rated as problematic.
CVE-2025-1955 affects the Online Class and Exam Scheduling System 1.0 by code-projects.
CVE-2025-1955 describes a cross-site scripting (XSS) vulnerability due to manipulation of the username argument.
To fix CVE-2025-1955, ensure that all input fields, particularly username, are properly sanitized and validated.
CVE-2025-1955 impacts the profile.php page within the Online Class and Exam Scheduling System.