CVE-2025-10797

Severity CVSS v4.0:
MEDIUM
Type:
CWE-74 Injection
Publication date:
22/09/2025
Last modified:
25/09/2025

Description

A vulnerability was determined in code-projects Hostel Management System 1.0. This issue affects some unknown processing of the file /justines/index.php. This manipulation of the argument log_email causes sql injection. The attack may be initiated remotely. The exploit has been publicly disclosed and may be utilized.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:angeljudesuarez:hostel_management_system:1.0:*:*:*:*:*:*:*