CVE-2025-14565High· 7.3▾ TwilightA vulnerability was identified in kidaze CourseSelectionSystem up to 42cd892b40a18d50bd4ed1905fa89f939173a464. The affected element is an unknown function of the file /Profilers/SProfile/login1.php. Such manipulation of the argument User…
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 40.2 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.4%
A vulnerability was identified in kidaze CourseSelectionSystem up to 42cd892b40a18d50bd4ed1905fa89f939173a464. The affected element is an unknown function of the file /Profilers/SProfile/login1.php. Such manipulation of the argument Username leads to sql injection. The attack may be performed from remote. The exploit is publicly available and might be used.
courseselectionsystem <= 2017-06-18Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2025-14566High· 7.3A security flaw has been discovered in kidaze CourseSelectionSystem up to 42cd892b40a18d50bd4ed1905fa89f939173a464
CVE-2025-10597High· 7.3A vulnerability was determined in kidaze CourseSelectionSystem up to 42cd892b40a18d50bd4ed1905fa89f939173a464
CVE-2025-13485High· 7.3A security flaw has been discovered in itsourcecode Online File Management System 1.0
CVE-2025-13302Medium· 4.7A vulnerability was identified in code-projects Courier Management System 1.0
CVE-2025-13303Medium· 6.3A vulnerability was determined in code-projects Courier Management System 1.0
CVE-2025-13300High· 7.3A vulnerability has been found in itsourcecode Web-Based Internet Laboratory Management System 1.0