Vulnerability Description
A vulnerability classified as critical has been found in CampCodes School Management Software 1.0. Affected is an unknown function of the file /edit-staff/ of the component Staff Handler. The manipulation leads to improper authorization. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Campcodes | School Management Software | 1.0 |
Related Weaknesses (CWE)
References
- https://github.com/KhukuriRimal/Vulnerabilities/blob/main/Sensitive%20Super%20AdExploitThird Party Advisory
- https://vuldb.com/?ctiid.294012Permissions Required
- https://vuldb.com/?id.294012Third Party AdvisoryVDB Entry
- https://vuldb.com/?submit.487618Third Party AdvisoryVDB Entry
- https://www.campcodes.com/Product
FAQ
What is CVE-2025-0849?
CVE-2025-0849 is a vulnerability with a CVSS score of 6.3 (MEDIUM). A vulnerability classified as critical has been found in CampCodes School Management Software 1.0. Affected is an unknown function of the file /edit-staff/ of the component Staff Handler. The manipula...
How severe is CVE-2025-0849?
CVE-2025-0849 has been rated MEDIUM with a CVSS base score of 6.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-0849?
Check the references section above for vendor advisories and patch information. Affected products include: Campcodes School Management Software.