PT-2025-37913 · Unknown · Sinav.Link Exam Result Module

Published

2025-09-16

·

Updated

2025-09-17

·

CVE-2025-4688

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions SINAV.LINK Exam Result Module versions prior to 1.2
Description An improper neutralization of special elements used in an SQL command ('SQL Injection') vulnerability exists in the SINAV.LINK Exam Result Module. This issue allows for SQL Injection.
Recommendations Update to version 1.2. As a temporary workaround, restrict access to the module. Deploy a Web Application Firewall (WAF).

Fix

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2025-4688

Affected Products

Sinav.Link Exam Result Module