3.5
CVSSv2

CVE-2020-25955

Published: 08/12/2020 Updated: 12/08/2022
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

SourceCodester Student Management System Project in PHP version 1.0 is vulnerable to stored a cross-site scripting (XSS) via the 'add subject' tab.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

student management system project in php project student management system project in php 1.0

Exploits

Student Management System PHP version 10 suffers from a persistent cross site scripting vulnerability ...

Mailing Lists

Dear Team, Please find attached POC and detailed information for CVE-2020-25889 & CVE-2020-25955 For CVE-2020-25889: # Exploit Title: online bus booking system project using PHP MySQL - SQL Injection # Exploit Author: Krishna Yadav # Vendor Homepage: wwwsourcecodestercom # Software Link: wwwsourcecodestercom/php/14438/onl ...