cbcvebase.
CVE-2025-9306
published 2025-08-21

CVE-2025-9306: A vulnerability was detected in SourceCodester Advanced School Management System 1.0. The impacted element is an unknown function of the file…

low2CVSS 4.0
AVNACLATNPRLUIPVCNVILVANSCNSINSANEPCRXIRXARXMAVXMACXMATXMPRXMUIXMVCXMVIXMVAXMSCXMSIXMSAXSXAUXRXVXREXUX
A vulnerability was detected in SourceCodester Advanced School Management System 1.0. The impacted element is an unknown function of the file /index.php/notice/addNotice. The manipulation of the argument noticeSubject results in cross site scripting. It is possible to launch the attack remotely. The exploit is now public and may be used.

Affected

2 ranges
VendorProductVersion rangeFixed in
donbermoyadvanced_school_management_system
sourcecodesteradvanced_school_management_system