CVE-2025-14643

Source
https://cve.org/CVERecord?id=CVE-2025-14643
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-14643.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2025-14643
Published
2025-12-14T04:15:49.287Z
Modified
2026-03-14T15:03:50.228580Z
Severity
  • 9.8 (Critical) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

A vulnerability was found in code-projects Simple Attendance Record System 2.0. The affected element is an unknown function of the file /check.php. Performing manipulation of the argument student results in sql injection. Remote exploitation of the attack is possible. The exploit has been made public and could be used.

References

Affected packages

Git /

Affected ranges

Database specific

unresolved_ranges
[
    {
        "events": [
            {
                "introduced": "0"
            },
            {
                "last_affected": "2.0"
            }
        ]
    }
]
source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-14643.json"