CVE-2025-29431

Code-projects Online Class and Exam Scheduling System V1.0 is vulnerable to Cross Site Scripting (XSS) in /pages/department.php via the id, code, and name parameters.
Configurations

Configuration 1 (hide)

cpe:2.3:a:code-projects:online_class_and_exam_scheduling_system:1.0:*:*:*:*:*:*:*

History

02 Apr 2025, 12:30

Type Values Removed Values Added
First Time Code-projects
Code-projects online Class And Exam Scheduling System
References () https://github.com/872323857/CVE/blob/main/Online%20Class%20and%20Exam%20Scheduling%20System-department.php.md - () https://github.com/872323857/CVE/blob/main/Online%20Class%20and%20Exam%20Scheduling%20System-department.php.md - Exploit, Third Party Advisory
CPE cpe:2.3:a:code-projects:online_class_and_exam_scheduling_system:1.0:*:*:*:*:*:*:*

19 Mar 2025, 19:15

Type Values Removed Values Added
Summary
  • (es) Code-projects Online Class and Exam Scheduling System V1.0 es vulnerable a cross site scripting (XSS) en /pages/department.php a través de los parámetros id, code y name.
CWE CWE-80
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 3.2

17 Mar 2025, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-17 17:15

Updated : 2025-04-02 12:30


NVD link : CVE-2025-29431

Mitre link : CVE-2025-29431

CVE.ORG link : CVE-2025-29431


JSON object : View

Products Affected

code-projects

  • online_class_and_exam_scheduling_system
CWE
CWE-80

Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS)