A flaw has been found in SourceCodester Online Student File Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/save_user.php. This manipulation of the argument firstname causes sql injection. The attack is possible to be carried out remotely. The exploit has been published and may be used. Other parameters might be affected as well.
References
Link | Resource |
---|---|
https://github.com/qcycop0101-hash/CVE/issues/12 | Exploit Third Party Advisory Issue Tracking |
https://vuldb.com/?ctiid.323918 | Permissions Required VDB Entry |
https://vuldb.com/?id.323918 | Third Party Advisory VDB Entry |
https://vuldb.com/?submit.648597 | Third Party Advisory VDB Entry |
https://www.sourcecodester.com/ | Product |
https://github.com/qcycop0101-hash/CVE/issues/12 | Exploit Third Party Advisory Issue Tracking |
Configurations
History
22 Sep 2025, 17:07
Type | Values Removed | Values Added |
---|---|---|
First Time |
Janobe
Janobe online Student File Management System |
|
CPE | cpe:2.3:a:janobe:online_student_file_management_system:1.0:*:*:*:*:*:*:* | |
References | () https://github.com/qcycop0101-hash/CVE/issues/12 - Exploit, Third Party Advisory, Issue Tracking | |
References | () https://vuldb.com/?ctiid.323918 - Permissions Required, VDB Entry | |
References | () https://vuldb.com/?id.323918 - Third Party Advisory, VDB Entry | |
References | () https://vuldb.com/?submit.648597 - Third Party Advisory, VDB Entry | |
References | () https://www.sourcecodester.com/ - Product |
16 Sep 2025, 14:15
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/qcycop0101-hash/CVE/issues/12 - |
15 Sep 2025, 23:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-09-15 23:15
Updated : 2025-09-22 17:07
NVD link : CVE-2025-10483
Mitre link : CVE-2025-10483
CVE.ORG link : CVE-2025-10483
JSON object : View
Products Affected
janobe
- online_student_file_management_system