Metrics
Affected Vendors & Products
Mon, 29 Sep 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Mon, 29 Sep 2025 09:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Kidaze
Kidaze courseselectionsystem |
|
Vendors & Products |
Kidaze
Kidaze courseselectionsystem |
Sun, 28 Sep 2025 00:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was determined in kidaze CourseSelectionSystem up to 42cd892b40a18d50bd4ed1905fa89f939173a464. This impacts an unknown function of the file /Profilers/PriProfile/COUNT3s4.php. Executing manipulation of the argument cbranch can lead to sql injection. It is possible to launch the attack remotely. The exploit has been publicly disclosed and may be utilized. This product takes the approach of rolling releases to provide continious delivery. Therefore, version details for affected and updated releases are not available. | |
Title | kidaze CourseSelectionSystem COUNT3s4.php sql injection | |
Weaknesses | CWE-74 CWE-89 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-09-29T14:51:13.856Z
Reserved: 2025-09-27T05:21:05.899Z
Link: CVE-2025-11089

Updated: 2025-09-29T14:51:00.678Z

Status : Awaiting Analysis
Published: 2025-09-28T00:15:32.687
Modified: 2025-09-29T19:34:10.030
Link: CVE-2025-11089

No data.

Updated: 2025-09-29T09:29:24Z