PT-2025-43916 · Sourcecodester · Sourcecodester Online Student Result System

Cloverhyl

·

Published

2025-10-27

·

Updated

2025-10-27

·

CVE-2025-12257

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions SourceCodester Online Student Result System version 1.0
Description A security issue exists in SourceCodester Online Student Result System 1.0. The system is susceptible to SQL injection due to improper handling of the ID parameter within the /view result.php file. This allows for remote manipulation of the database. The details of the exploit have been publicly disclosed.
Recommendations Apply appropriate input validation and sanitization techniques to the ID parameter in the /view result.php file.

Exploit

Fix

Special Elements Injection

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2025-12257

Affected Products

Sourcecodester Online Student Result System