CVE-2025-15205
EUVD-2025-20565029.12.2025, 21:15
A vulnerability was identified in code-projects Student File Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /download.php. The manipulation of the argument istore_id leads to sql injection. The attack can be initiated remotely. The exploit is publicly available and might be used.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| fabian | student_file_management_system | 1.0 |
𝑥
= Vulnerable software versions