PT-2025-35153 · Code Projects · Student Information Management System

Zzb2

·

Published

2025-08-28

·

Updated

2025-08-29

·

CVE-2025-9595

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions code-projects Student Information Management System version 1.0
Description A cross site scripting issue exists due to the manipulation of the uname argument. The issue is located in an unknown function of the file /login.php. The attack can be performed remotely. The exploit has been made public.
Recommendations Sanitize the uname argument to prevent cross site scripting. Review the code in /login.php for potential vulnerabilities.

Exploit

Fix

XSS

Code Injection

Weakness Enumeration

Related Identifiers

CVE-2025-9595

Affected Products

Student Information Management System