CNNVD-202510-1273 Information

CNNVD ID

CNNVD-202510-1273

CVE-2025-11551

  • CNNVD Published: 2025-10-09

Description (Chinese)

Code-Projects Student Result Manager是Code-Projects的一个学生成绩管理工具。 Code-Projects Student Result Manager 1.0版本存在安全漏洞,该漏洞源于对文件src/students/Database.java中参数roll/name/gpa的错误操作,可能导致SQL注入攻击。

Description (English)

Code-Projects Research Manager is a student achievement management tool for Code-Projects. There is a security loophole in version 1.0 of Code-ProjectsStudent Research Manager, which stems from a mishandling of the parameter roll/name/gpa in document src/students/Database.java, which could lead to an SQL injection attack.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Code-Projects

Published

2025-10-09

Last Modified

2026-02-24

References

https://code-projects.org/ https://github.com/lakshayyverma/CVE-Discovery/blob/main/Student%20Result%20Manager.md https://vuldb.com/?ctiid.327710 https://vuldb.com/?id.327710 https://vuldb.com/?submit.670256 https://access.redhat.com/security/cve/cve-2025-11551

Share on: