First published: Mon Mar 17 2025(Updated: )
A vulnerability, which was classified as critical, was found in code-projects Online Class and Exam Scheduling System 1.0. Affected is an unknown function of the file /pages/salut_del.php. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Code-projects Online Class and Exam Scheduling System | ||
Code-projects Online Class and Exam Scheduling System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-2393 is classified as a critical severity vulnerability.
CVE-2025-2393 is a SQL injection vulnerability found in the Online Class and Exam Scheduling System.
To fix CVE-2025-2393, you should sanitize and validate the input for the 'id' parameter in the affected file /pages/salut_del.php.
CVE-2025-2393 affects the Code-projects Online Class and Exam Scheduling System version 1.0.
Yes, successful exploitation of CVE-2025-2393 can lead to unauthorized access to sensitive data through SQL injection.