Vulnerability Description
Simple User Management System with PHP-MySQL v1.0 is vulnerable to Cross-Site Scripting (XSS) via the Profile Section. The system fails to properly sanitize user input, allowing attackers to inject and execute arbitrary JavaScript when the input is displayed in the browser
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Nababur | Simple-User-Management-System | 1.0 |
Related Weaknesses (CWE)
References
- https://github.com/sanin-s1r3n/CVE-Research/blob/main/CVE-5ExploitThird Party Advisory
FAQ
What is CVE-2025-63442?
CVE-2025-63442 is a vulnerability with a CVSS score of 4.6 (MEDIUM). Simple User Management System with PHP-MySQL v1.0 is vulnerable to Cross-Site Scripting (XSS) via the Profile Section. The system fails to properly sanitize user input, allowing attackers to inject an...
How severe is CVE-2025-63442?
CVE-2025-63442 has been rated MEDIUM with a CVSS base score of 4.6/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-63442?
Check the references section above for vendor advisories and patch information. Affected products include: Nababur Simple-User-Management-System.