CVE-2025-8338: projectworlds Online Admission System adminac.php sql injection
Published Jul 30, 2025
·Updated
A vulnerability was found in projectworlds Online Admission System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /adminac.php. The manipulation of the argument ID leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
2 affected components
Projectworlds Online Admission System
Projectworlds Online Admission System=1.0
Event History
Jul 30, 2025
CVE Published
via MITRE·11:32 PM
Data Sourced
via MITRE·11:32 PM
DescriptionSeverityWeakness
Jul 31, 2025
Data Sourced
via NVD·12:15 AM
DescriptionSeverityWeaknessAffected Software
Jun 20, 58473
Event
via NVD·05:22 PM
Frequently Asked Questions
1
What is the severity of CVE-2025-8338?
CVE-2025-8338 is classified as a critical vulnerability.
2
How do I fix CVE-2025-8338?
To fix CVE-2025-8338, ensure proper input validation and use parameterized queries to mitigate SQL injection risks.
3
What type of vulnerability is CVE-2025-8338?
CVE-2025-8338 is an SQL injection vulnerability that affects the /adminac.php file.
4
Can CVE-2025-8338 be exploited remotely?
Yes, CVE-2025-8338 can be exploited remotely by manipulating the ID argument.
5
Which software is affected by CVE-2025-8338?
CVE-2025-8338 affects the Projectworlds Online Admission System version 1.0.