Metrics
Affected Vendors & Products
Fri, 17 Oct 2025 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:kidaze:courseselectionsystem:*:*:*:*:*:*:*:* |
Wed, 17 Sep 2025 11:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Kidaze
Kidaze courseselectionsystem |
|
| Vendors & Products |
Kidaze
Kidaze courseselectionsystem |
Mon, 15 Sep 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 15 Sep 2025 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was identified in kidaze CourseSelectionSystem up to 42cd892b40a18d50bd4ed1905fa89f939173a464. The affected element is an unknown function of the file /Profilers/PriProfile/eligibility.php. Such manipulation of the argument Branch leads to sql injection. The attack can be launched remotely. The exploit is publicly available and might be used. This product does not use versioning. This is why information about affected and unaffected releases are unavailable. | |
| Title | kidaze CourseSelectionSystem eligibility.php sql injection | |
| Weaknesses | CWE-74 CWE-89 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-09-15T20:32:05.542Z
Updated: 2025-09-15T20:40:36.690Z
Reserved: 2025-09-15T13:54:12.843Z
Link: CVE-2025-10477
Updated: 2025-09-15T20:40:32.920Z
Status : Analyzed
Published: 2025-09-15T21:15:35.257
Modified: 2025-10-17T14:49:47.393
Link: CVE-2025-10477
No data.