A security flaw has been discovered in SourceCodester Online Polling System 1.0. The impacted element is an unknown function of the file /manage-profile.php. The manipulation of the argument firstname results in cross site scripting. The attack can be launched remotely. The exploit has been released to the public and may be exploited.
References
Link | Resource |
---|---|
https://github.com/ganzhi-qcy/cve/issues/18 | Exploit Issue Tracking |
https://vuldb.com/?ctiid.323023 | Permissions Required VDB Entry |
https://vuldb.com/?id.323023 | Third Party Advisory VDB Entry |
https://vuldb.com/?submit.644503 | Third Party Advisory VDB Entry |
https://www.sourcecodester.com/ | Product |
Configurations
History
09 Sep 2025, 15:52
Type | Values Removed | Values Added |
---|---|---|
First Time |
Razormist
Razormist online Polling System |
|
References | () https://github.com/ganzhi-qcy/cve/issues/18 - Exploit, Issue Tracking | |
References | () https://vuldb.com/?ctiid.323023 - Permissions Required, VDB Entry | |
References | () https://vuldb.com/?id.323023 - Third Party Advisory, VDB Entry | |
References | () https://vuldb.com/?submit.644503 - Third Party Advisory, VDB Entry | |
References | () https://www.sourcecodester.com/ - Product | |
CPE | cpe:2.3:a:razormist:online_polling_system:1.0:*:*:*:*:*:*:* |
08 Sep 2025, 01:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-09-08 01:15
Updated : 2025-09-09 15:52
NVD link : CVE-2025-10075
Mitre link : CVE-2025-10075
CVE.ORG link : CVE-2025-10075
JSON object : View
Products Affected
razormist
- online_polling_system