Metrics
Affected Vendors & Products
Wed, 17 Sep 2025 11:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Kidaze
Kidaze courseselectionsystem |
|
Vendors & Products |
Kidaze
Kidaze courseselectionsystem |
Mon, 15 Sep 2025 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Mon, 15 Sep 2025 20:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was identified in kidaze CourseSelectionSystem up to 42cd892b40a18d50bd4ed1905fa89f939173a464. The affected element is an unknown function of the file /Profilers/PriProfile/eligibility.php. Such manipulation of the argument Branch leads to sql injection. The attack can be launched remotely. The exploit is publicly available and might be used. This product does not use versioning. This is why information about affected and unaffected releases are unavailable. | |
Title | kidaze CourseSelectionSystem eligibility.php sql injection | |
Weaknesses | CWE-74 CWE-89 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-09-15T20:32:05.542Z
Updated: 2025-09-15T20:40:36.690Z
Reserved: 2025-09-15T13:54:12.843Z
Link: CVE-2025-10477

Updated: 2025-09-15T20:40:32.920Z

Status : Awaiting Analysis
Published: 2025-09-15T21:15:35.257
Modified: 2025-09-16T12:49:16.060
Link: CVE-2025-10477

No data.