Description
A vulnerability was detected in 1000projects Design & Development of Student Database Management System 1.0. Affected is an unknown function of the file /TeacherLogin/Academics/SubjectDetails.php. The manipulation of the argument SubCode results in sql injection. The attack may be performed from remote. The exploit is now public and may be used.
Published: 2025-11-17
Score: 5.3 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 19 Nov 2025 13:15:00 +0000

Type Values Removed Values Added
First Time appeared 1000projects design \& Development Of Student Database Management System
CPEs cpe:2.3:a:1000projects:design_\&_development_of_student_database_management_system:1.0:*:*:*:*:*:*:*
Vendors & Products 1000projects design \& Development Of Student Database Management System

Tue, 18 Nov 2025 09:15:00 +0000

Type Values Removed Values Added
First Time appeared 1000projects
1000projects design & Development Of Student Database Management System
Vendors & Products 1000projects
1000projects design & Development Of Student Database Management System

Mon, 17 Nov 2025 16:15:00 +0000

Type Values Removed Values Added
Description A vulnerability was detected in 1000projects Design & Development of Student Database Management System 1.0. Affected is an unknown function of the file /TeacherLogin/Academics/SubjectDetails.php. The manipulation of the argument SubCode results in sql injection. The attack may be performed from remote. The exploit is now public and may be used.
Title 1000projects Design & Development of Student Database Management System SubjectDetails.php sql injection
Weaknesses CWE-74
CWE-89
References
Metrics cvssV2_0

{'score': 6.5, 'vector': 'AV:N/AC:L/Au:S/C:P/I:P/A:P/E:POC/RL:ND/RC:UR'}

cvssV3_0

{'score': 6.3, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:R'}

cvssV3_1

{'score': 6.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:R'}

cvssV4_0

{'score': 5.3, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Subscriptions

1000projects Design & Development Of Student Database Management System Design \& Development Of Student Database Management System
cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2026-02-24T08:36:00.332Z

Reserved: 2025-11-17T07:55:03.235Z

Link: CVE-2025-13289

cve-icon Vulnrichment

Updated: 2025-11-17T16:06:54.128Z

cve-icon NVD

Status : Analyzed

Published: 2025-11-17T16:15:46.307

Modified: 2026-04-29T01:00:01.613

Link: CVE-2025-13289

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2025-11-18T09:06:13Z

Weaknesses