CVE-2025-6473: code-projects School Fees Payment System fees.php cross site scripting
A vulnerability, which was classified as problematic, was found in code-projects School Fees Payment System 1.0. This affects an unknown part of the file /fees.php. The manipulation of the argument transcationremark leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-6473?
CVE-2025-6473 is classified as a problematic vulnerability.
How do I fix CVE-2025-6473?
To fix CVE-2025-6473, sanitize and validate the 'transcation_remark' input to prevent cross-site scripting attacks.
Which file is affected by CVE-2025-6473?
CVE-2025-6473 affects the /fees.php file in the School Fees Payment System.
What type of vulnerability is CVE-2025-6473?
CVE-2025-6473 is a cross-site scripting (XSS) vulnerability.
What can attackers do exploiting CVE-2025-6473?
Attackers can exploit CVE-2025-6473 to execute malicious scripts in the context of users' sessions.