CVE-2025-64070: XSS
Published Dec 2, 2025
·Updated
Sourcecodester Student Grades Management System v1.0 is vulnerable to Cross Site Scripting (XSS) in the Add New Subject Description field.
Affected Software
2 affected components
Sourcecodester Student Grades Management System
Remyandrade Student Grades Management System=1.0
Event History
Dec 2, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:16 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-64070?
CVE-2025-64070 has a medium severity rating due to its potential for executing cross-site scripting attacks.
2
How do I fix CVE-2025-64070?
To fix CVE-2025-64070, validate and sanitize input in the Add New Subject Description field to prevent XSS.
3
What systems are affected by CVE-2025-64070?
CVE-2025-64070 affects Sourcecodester Student Grades Management System version 1.0.
4
What type of attack can CVE-2025-64070 facilitate?
CVE-2025-64070 facilitates cross-site scripting (XSS) attacks.
5
Is user data at risk due to CVE-2025-64070?
Yes, user data may be at risk because attackers can exploit the XSS vulnerability to execute malicious scripts.