CVE-2025-14967
19.12.2025, 20:15
A vulnerability was identified in itsourcecode Student Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /candidates_report.php. The manipulation of the argument school_year leads to sql injection. The attack can be initiated remotely. The exploit is publicly available and might be used.
| Vendor | Product | Version |
|---|---|---|
| angeljudesuarez | student_management_system | 1.0 |
𝑥
= Vulnerable software versions