Description
A vulnerability was identified in itsourcecode Student Information System 1.0. Affected by this vulnerability is an unknown functionality of the file /schedule_edit1.php. Such manipulation of the argument schedule_id leads to sql injection. The attack may be launched remotely. The exploit is publicly available and might be used.
Problem types
Product status
Timeline
| 2025-11-23: | Advisory disclosed |
| 2025-11-23: | VulDB entry created |
| 2025-11-23: | VulDB entry last update |
Credits
JackZ (VulDB User)
References
vuldb.com/?id.333345 (VDB-333345 | itsourcecode Student Information System schedule_edit1.php sql injection)
vuldb.com/?ctiid.333345 (VDB-333345 | CTI Indicators (IOB, IOC, TTP, IOA))
vuldb.com/?submit.699516 (Submit #699516 | itsourcecode Student Information System V1.0 SQL Injection)
github.com/ltranquility/CVE/issues/14
itsourcecode.com/