CVE-2025-4837 | projectworlds Student Project Allocation System 1.0 /make_group_sql.php mem1/mem2/mem3 sql injection (EUVD-2025-15602)
A vulnerability classified as critical has been found in projectworlds Student Project Allocation System 1.0. This affects an unknown part of the file /make_group_sql.php. The manipulation of the argument mem1/mem2/mem3 leads to sql injection.
This vulnerability is uniquely identified as CVE-2025-4837. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.