Security Advisory

CVE-2025-14967

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-12-19 19:32:12
Last updated 2025-12-19 19:40:16
Assigner VulDB
State PUBLISHED

Description

A vulnerability was identified in itsourcecode Student Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /candidates_report.php. The manipulation of the argument school_year leads to sql injection. The attack can be initiated remotely. The exploit is publicly available and might be used.