Description
PHP Education Manager v1.0 is vulnerable to Cross Site Scripting (XSS) stored Cross-Site Scripting (XSS) vulnerability in the topics management module (topics.php). Attackers can inject malicious JavaScript payloads into the Titlefield during topic creation or updates.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-32115 | PHP Education Manager v1.0 is vulnerable to Cross Site Scripting (XSS) stored Cross-Site Scripting (XSS) vulnerability in the topics management module (topics.php). Attackers can inject malicious JavaScript payloads into the Titlefield during topic creation or updates. |
References
History
Tue, 07 Oct 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Iqbolshoh
Iqbolshoh php Education Management |
|
| CPEs | cpe:2.3:a:iqbolshoh:php_education_management:1.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Iqbolshoh
Iqbolshoh php Education Management |
Fri, 03 Oct 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Thu, 02 Oct 2025 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | PHP Education Manager v1.0 is vulnerable to Cross Site Scripting (XSS) stored Cross-Site Scripting (XSS) vulnerability in the topics management module (topics.php). Attackers can inject malicious JavaScript payloads into the Titlefield during topic creation or updates. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-10-03T19:06:06.839Z
Reserved: 2025-09-26T00:00:00.000Z
Link: CVE-2025-60782
Updated: 2025-10-03T19:04:11.476Z
Status : Analyzed
Published: 2025-10-02T15:15:58.587
Modified: 2025-10-07T18:14:56.730
Link: CVE-2025-60782
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD