CVE-2025-4470: SourceCodester Online Student Clearance System add-student.php cross site scripting
A vulnerability classified as problematic was found in SourceCodester Online Student Clearance System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/add-student.php. The manipulation of the argument Fullname leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-4470?
CVE-2025-4470 is classified as a problematic vulnerability due to its potential for cross-site scripting.
How do I fix CVE-2025-4470?
To fix CVE-2025-4470, ensure proper input validation and sanitization for the Fullname parameter in the /admin/add-student.php file.
What systems are affected by CVE-2025-4470?
CVE-2025-4470 affects SourceCodester Online Student Clearance System version 1.0.
What type of attack can CVE-2025-4470 facilitate?
CVE-2025-4470 can facilitate cross-site scripting attacks through the manipulation of the Fullname parameter.
When was CVE-2025-4470 discovered?
The specific discovery date for CVE-2025-4470 is not provided, but it has been acknowledged as a recent vulnerability.