CVE-2025-44134: SQL Injection
Published Apr 24, 2025
·Updated
A vulnerability was found in Code-Projects Online Class and Exam Scheduling System 1.0 in the file /Scheduling/pages/classsave.php. Manipulation of parameter class will lead to SQL injection attacks.
Affected Software
2 affected components
Code-projects Online Class and Exam Scheduling System
Code-projects Online Class and Exam Scheduling System=1.0
Event History
Apr 24, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Oct 8, 57345
Event
via FIRST·06:26 AM
Frequently Asked Questions
1
What is the severity of CVE-2025-44134?
The severity of CVE-2025-44134 is classified as high due to the potential for SQL injection attacks.
2
How do I fix CVE-2025-44134?
To fix CVE-2025-44134, sanitize and validate the input parameters in the class_save.php file to prevent SQL injection.
3
What type of vulnerability is CVE-2025-44134?
CVE-2025-44134 is a SQL injection vulnerability that allows attackers to manipulate database queries.
4
What software is affected by CVE-2025-44134?
CVE-2025-44134 affects the Code-Projects Online Class and Exam Scheduling System version 1.0.
5
Can CVE-2025-44134 be exploited remotely?
Yes, CVE-2025-44134 can be exploited remotely if the attacker has access to the vulnerable application's input parameters.