CVE-2025-0560

CVSS 3.1 Score 2.4 of 10 (low)

Details

Published Jan 18, 2025
CWE ID 94
CWE ID 79

Summary

CVE-2025-0560 is a newly disclosed vulnerability affecting the CampCodes School Management Software version 1.0. This issue lies within an unidentified function of the Photo Gallery Page's /photo-gallery file. Manipulation of the Description argument can lead to a Cross-Site Scripting (XSS) attack, enabling remote exploitation. Public disclosure means this vulnerability is now at risk of widespread exploitation.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share