CVE-2025-65133

A SQL injection vulnerability exists in the School Management System (version 1.0) by manikandan580. An unauthenticated or authenticated remote attacker can supply a crafted HTTP request to the affected endpoint to manipulate SQL query logic and extract sensitive database information.
Configurations

No configuration.

History

16 Apr 2026, 13:16

Type Values Removed Values Added
References
  • () https://github.com/TREXNEGRO/Security-Advisories/blob/main/CVE-2025-65133/poc.md -
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
CWE CWE-89

14 Apr 2026, 16:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-04-14 16:16

Updated : 2026-04-17 15:33


NVD link : CVE-2025-65133

Mitre link : CVE-2025-65133

CVE.ORG link : CVE-2025-65133


JSON object : View

Products Affected

No product.

CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')