CNNVD-202511-077 Information

CNNVD ID

CNNVD-202511-077

CVE-2025-63443

  • CNNVD Published: 2025-11-03

Description (Chinese)

school-management-system是Shubham kumar个人开发者的一个PHP为学校或小型机构开发的学校管理系统。 school-management-system 1.0版本存在安全漏洞,该漏洞源于/login.php中参数password未经验证,可能导致跨站脚本攻击。

Description (English)

School-management-system is a PHP developed by Shubham Kumar Personal Developer for schools or small institutions. There is a security loophole in version 1.0 of the school-manage-system, which originates from the unverified password parameter in/login.php, which could lead to a cross-site script attack.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

个人开发者

Published

2025-11-03

Last Modified

2026-02-24

References

https://github.com/sanin-s1r3n/CVE-Research/blob/main/CVE-6 https://access.redhat.com/security/cve/cve-2025-63443

Share on: