Vulnerability Description
A vulnerability was determined in itsourcecode Student Information Management System 1.0. This affects an unknown part of the file /admin/login.php. Executing manipulation of the argument uname can lead to sql injection. The attack may be launched remotely. The exploit has been publicly disclosed and may be utilized.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Itsourcecode | Student Information Management System | 1.0 |
Related Weaknesses (CWE)
References
- https://github.com/hjsjbsg/record-for-own/issues/3ExploitIssue Tracking
- https://itsourcecode.com/Product
- https://vuldb.com/?ctiid.322985Permissions RequiredVDB Entry
- https://vuldb.com/?id.322985Third Party AdvisoryVDB Entry
- https://vuldb.com/?submit.641752Third Party AdvisoryVDB Entry
- https://github.com/hjsjbsg/record-for-own/issues/3ExploitIssue Tracking
FAQ
What is CVE-2025-10062?
CVE-2025-10062 is a vulnerability with a CVSS score of 7.3 (HIGH). A vulnerability was determined in itsourcecode Student Information Management System 1.0. This affects an unknown part of the file /admin/login.php. Executing manipulation of the argument uname can le...
How severe is CVE-2025-10062?
CVE-2025-10062 has been rated HIGH with a CVSS base score of 7.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-10062?
Check the references section above for vendor advisories and patch information. Affected products include: Itsourcecode Student Information Management System.