School Affairs System from Quanxun has an Exposure of Sensitive Information, allowing unauthenticated attackers to view specific pages and obtain database information as well as plaintext administrator credentials.
Fixes

Solution

Please contact the vendor for updates.


Workaround

No workaround given by the vendor.

History

Fri, 11 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.00099}

epss

{'score': 0.00127}


Tue, 11 Feb 2025 06:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 11 Feb 2025 03:30:00 +0000

Type Values Removed Values Added
Description School Affairs System from Quanxun has an Exposure of Sensitive Information, allowing unauthenticated attackers to view specific pages and obtain database information as well as plaintext administrator credentials.
Title Quanxun School Affairs System - Exposure of Sensitive Information
Weaknesses CWE-497
References
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: twcert

Published:

Updated: 2025-08-26T19:48:05.401Z

Reserved: 2025-02-10T01:51:07.503Z

Link: CVE-2025-1144

cve-icon Vulnrichment

Updated: 2025-02-11T05:23:23.999Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-02-11T04:15:08.330

Modified: 2025-08-26T20:15:35.057

Link: CVE-2025-1144

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.