CVE-2025-56697

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
16/09/2025
Last modified:
18/09/2025

Description

A Stored Cross-Site Scripting (XSS) vulnerability was discovered in the /users/adminpanel/admin/home.php?page=feedbacks file of Kashipara Computer Base Test v1.0. Attackers can inject malicious scripts via the smyFeedbacks POST parameter in /users/home.php.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:askar634:computer_base_test:1.0:*:*:*:*:*:*:*