Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Sunspanter

#24479of 53,619
9.8Total CVSS
Vulnerabilities · 1
PT-2025-49578
9.8
2025-12-08
Itsourcecode · Sourcecodester Student Management System · CVE-2025-14258
**Name of the Vulnerable Software and Affected Versions** itsourcecode Student Management System version 1.0 **Description** A flaw exists in itsourcecode Student Management System 1.0, specifically within the file `/newsubject.php`. The `sub` argument is susceptible to SQL injection, allowing for remote exploitation. The details of the exploit have been publicly disclosed. **Recommendations** Apply any available updates or patches for itsourcecode Student Management System version 1.0. As a temporary workaround, restrict access to the `/newsubject.php` file. Sanitize the `sub` parameter to prevent SQL injection attacks.