cbcvebase.
CVE-2025-9689
published 2025-08-30

CVE-2025-9689: A vulnerability was detected in SourceCodester Advanced School Management System 1.0. The impacted element is an unknown function of the file…

low2.1CVSS 4.0
AVNACLATNPRLUINVCLVILVALSCNSINSANEPCRXIRXARXMAVXMACXMATXMPRXMUIXMVCXMVIXMVAXMSCXMSIXMSAXSXAUXRXVXREXUX
A vulnerability was detected in SourceCodester Advanced School Management System 1.0. The impacted element is an unknown function of the file /index.php/stock/item_select. The manipulation of the argument q results in sql injection. It is possible to launch the attack remotely. The exploit is now public and may be used.

Affected

2 ranges
VendorProductVersion rangeFixed in
donbermoyadvanced_school_management_system
sourcecodesteradvanced_school_management_system