CVE-2025-57515
Severity CVSS v4.0:
Pending analysis
Type:
CWE-89
SQL Injection
Publication date:
06/10/2025
Last modified:
08/10/2025
Description
A SQL injection vulnerability has been identified in Uniclare Student Portal v2. This flaw allows remote attackers to inject arbitrary SQL commands via vulnerable input fields, enabling the execution of time-delay functions to infer database responses.
Impact
Base Score 3.x
9.80
Severity 3.x
CRITICAL



