Metrics
Affected Vendors & Products
Wed, 08 Oct 2025 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:kidaze:courseselectionsystem:*:*:*:*:*:*:*:* |
Mon, 29 Sep 2025 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Kidaze
Kidaze courseselectionsystem |
|
| Vendors & Products |
Kidaze
Kidaze courseselectionsystem |
Fri, 26 Sep 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 26 Sep 2025 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A flaw has been found in kidaze CourseSelectionSystem up to 42cd892b40a18d50bd4ed1905fa89f939173a464. This issue affects some unknown processing of the file /Profilers/PriProfile/COUNT3s6.php. Executing manipulation of the argument CPU can lead to sql injection. The attack may be performed from remote. The exploit has been published and may be used. This product utilizes a rolling release system for continuous delivery, and as such, version information for affected or updated releases is not disclosed. | |
| Title | kidaze CourseSelectionSystem COUNT3s6.php sql injection | |
| Weaknesses | CWE-74 CWE-89 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-09-26T17:32:05.839Z
Updated: 2025-09-26T17:49:58.986Z
Reserved: 2025-09-26T08:44:43.616Z
Link: CVE-2025-11032
Updated: 2025-09-26T17:49:47.591Z
Status : Analyzed
Published: 2025-09-26T18:15:35.107
Modified: 2025-10-08T20:16:14.980
Link: CVE-2025-11032
No data.