PT-2025-44772 · Unknown · School Management System

Published

2025-11-03

·

Updated

2025-11-03

·

CVE-2025-63443

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions School Management System PHP version 1.0
Description School Management System PHP v1.0 is susceptible to Cross Site Scripting (XSS) attacks. The issue is located in the '/login.php' file and can be triggered through manipulation of the password parameter.
Recommendations Apply a fix to the /login.php file to sanitize the password parameter and prevent XSS attacks.

Exploit

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2025-63443

Affected Products

School Management System