CVE-2025-9439: 1000projects Online Project Report Submission and Evaluation System edit_faculty.php cross site scripting
A weakness has been identified in 1000projects Online Project Report Submission and Evaluation System 1.0. Affected by this vulnerability is an unknown functionality of the file /rse/admin/editfaculty.php?id=2. This manipulation of the argument Name causes cross site scripting. The attack is possible to be carried out remotely. The exploit has been made available to the public and could be exploited.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-9439?
CVE-2025-9439 has been assessed as a high severity vulnerability due to its potential for cross-site scripting attacks.
What systems are affected by CVE-2025-9439?
CVE-2025-9439 affects version 1.0 of the 1000projects Online Project Report Submission and Evaluation System.
How do I fix CVE-2025-9439?
To fix CVE-2025-9439, sanitize and validate all input data, especially data received from user-controlled sources before processing.
What type of vulnerability is CVE-2025-9439?
CVE-2025-9439 is categorized as a cross-site scripting (XSS) vulnerability.
Who can exploit CVE-2025-9439?
Any user who can interact with the affected functionality at /rse/admin/edit_faculty.php?id=2 can potentially exploit CVE-2025-9439.