CVE-2025-2392 | code-projects Online Class and Exam Scheduling System 1.0 /pages/activate.php ID sql injection
A vulnerability labeled as critical has been found in code-projects Online Class and Exam Scheduling System 1.0. This affects an unknown function of the file /pages/activate.php. Executing manipulation of the argument ID can lead to sql injection.
This vulnerability is registered as CVE-2025-2392. It is possible to launch the attack remotely. Furthermore, an exploit is available.