A vulnerability was found in code-projects Student File Management System 1.0. This affects an unknown part of the file /admin/update_user.php of the component Update User Page. Performing manipulation results in cross site scripting. The attack may be initiated remotely. The exploit has been made public and could be used.
References
| Link | Resource |
|---|---|
| https://code-projects.org/ | Product |
| https://github.com/jjjjj-zr/jjjjjzr15/issues/1 | Exploit Issue Tracking Third Party Advisory |
| https://vuldb.com/?ctiid.336394 | Permissions Required VDB Entry |
| https://vuldb.com/?id.336394 | Third Party Advisory VDB Entry |
| https://vuldb.com/?submit.713873 | Third Party Advisory VDB Entry |
Configurations
History
16 Dec 2025, 20:08
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:a:fabian:student_file_management_system:1.0:*:*:*:*:*:*:* | |
| References | () https://code-projects.org/ - Product | |
| References | () https://github.com/jjjjj-zr/jjjjjzr15/issues/1 - Exploit, Issue Tracking, Third Party Advisory | |
| References | () https://vuldb.com/?ctiid.336394 - Permissions Required, VDB Entry | |
| References | () https://vuldb.com/?id.336394 - Third Party Advisory, VDB Entry | |
| References | () https://vuldb.com/?submit.713873 - Third Party Advisory, VDB Entry | |
| First Time |
Fabian
Fabian student File Management System |
14 Dec 2025, 14:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-12-14 14:15
Updated : 2025-12-16 20:08
NVD link : CVE-2025-14662
Mitre link : CVE-2025-14662
CVE.ORG link : CVE-2025-14662
JSON object : View
Products Affected
fabian
- student_file_management_system
