CVE-2025-9306

Published
View on NVD ↗
CVSS v3
3.5
LOW
CVSS v2
4
MEDIUM
Affected
1
PROJECT

Description

A vulnerability was detected in SourceCodester Advanced School Management System 1.0. The impacted element is an unknown function of the file /index.php/notice/addNotice. The manipulation of the argument noticeSubject results in cross site scripting. It is possible to launch the attack remotely. The exploit is now public and may be used.

For CVE submission – aids the receiving party in understanding the vulnerability.
GitHubGitHub