CVE-2025-13270
17.11.2025, 08:16
A vulnerability was found in Campcodes School Fees Payment Management System 1.0. This affects an unknown function of the file /ajax.php?action=save_course. The manipulation of the argument ID results in sql injection. The attack may be launched remotely. The exploit has been made public and could be used.
Awaiting analysis
This vulnerability is currently awaiting analysis.