CVE-2020-25408

Severity CVSS v4.0:
Pending analysis
Type:
CWE-352 Cross-Site Request Forgery (CSRF)
Publication date:
24/05/2021
Last modified:
27/05/2021

Description

A Cross-Site Request Forgery (CSRF) vulnerability exists in ProjectWorlds College Management System Php 1.0 that allows a remote attacker to modify, delete, or make a new entry of the student, faculty, teacher, subject, scores, location, and article data.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:college_management_system_project:college_management_system:1.0:*:*:*:*:*:*:*