CVE-2025-13057
12.11.2025, 19:15
A vulnerability was identified in Campcodes School Fees Payment Management System 1.0. Impacted is an unknown function of the file /ajax.php?action=save_student. The manipulation of the argument ID leads to sql injection. The attack may be initiated remotely. The exploit is publicly available and might be used.
Awaiting analysis
This vulnerability is currently awaiting analysis.