CVE-2025-0560
CVSS 3.1 Score 2.4 of 10 (low)
Details
Published Jan 18, 2025
CWE ID 94
CWE ID 79
Summary
CVE-2025-0560 is a newly disclosed vulnerability affecting the CampCodes School Management Software version 1.0. This issue lies within an unidentified function of the Photo Gallery Page's /photo-gallery file. Manipulation of the Description argument can lead to a Cross-Site Scripting (XSS) attack, enabling remote exploitation. Public disclosure means this vulnerability is now at risk of widespread exploitation.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.