CNNVD-202512-2343 Information
Dec 12, 2025
cve
CNNVD ID
CNNVD-202512-2343
Related CVE
- CNNVD Published: 2025-12-12
Description (Chinese)
CourseSelectionSystem是kidaze个人开发者的一个简易网上选课系统。 CourseSelectionSystem存在SQL注入漏洞,该漏洞源于对文件/Profilers/SProfile/reg.php中参数USN的错误操作,可能导致SQL注入。
Description (English)
CourseSystem is a simple online selection system for kidaze personal developers. CourseSelectionSystem has an SQL-injection loophole that results from an error in the USN parameter in the file/Profiles/SProfile/reg.php, which may result in SQL injection.
Hazard Level
Medium
Vulnerability Type
SQL注入
Affected Vendor
个人开发者
Published
2025-12-12
Last Modified
2026-02-24
References
https://vuldb.com/?submit.703876 https://vuldb.com/?submit.704951 https://github.com/Anti1i/cve/issues/2 https://vuldb.com/?ctiid.336190 https://vuldb.com/?id.336190
Share on: