kidaze CourseSelectionSystem COUNT2.php sql injection
Vulnerability Description
A vulnerability was determined in kidaze CourseSelectionSystem up to 42cd892b40a18d50bd4ed1905fa89f939173a464. This vulnerability affects unknown code of the file /Profilers/PriProfile/COUNT2.php. This manipulation of the argument cname causes sql injection. The attack may be initiated remotely. This product uses a rolling release model to deliver continuous updates. As a result, specific version information for affected or updated releases is not available.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-10597
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- shang (VulDB User)
References
More from kidaze
View All →Affected Vendor
kidaze
View all reports →