CVE-2025-1144

Published Feb 11, 2025

Last updated 12 days ago

Overview

Description
School Affairs System from Quanxun has an Exposure of Sensitive Information, allowing unauthenticated attackers to view specific pages and obtain database information as well as plaintext administrator credentials.
Source
twcert@cert.org.tw
NVD status
Received

Risk scores

CVSS 3.1

Type
Secondary
Base score
9.8
Impact score
5.9
Exploitability score
3.9
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Severity
CRITICAL

Weaknesses

twcert@cert.org.tw
CWE-497
134c704f-9b21-4f2e-91b3-4a467353bcc0
CWE-497

Social media

Hype score
Not currently trending
  1. CVE-2025-1144 (CVSS:9.8, CRITICAL) is Awaiting Analysis. School Affairs System from Quanxun has an Exposure of Sensitive Information, allowing unauthenticated attackers to view ..https://t.co/Cy3oxR0bmc #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    @cracbot

    16 Feb 2025

    4 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. ๐Ÿšจ CVE-2025-1144 โš ๏ธ๐Ÿ”ด CRITICAL (9.8) ๐Ÿข Quanxun - School Affairs System ๐Ÿ—๏ธ 0 ๐Ÿ”— https://t.co/gNybQrBv7y ๐Ÿ”— https://t.co/BOv3aBAQnD #CyberCron #VulnAlert https://t.co/SB2N7SgyQn

    @cybercronai

    12 Feb 2025

    11 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  3. CVE-2025-1144 Unauthenticated Information Disclosure in Quanxun School Affairs System https://t.co/6NC55EdZEI

    @VulmonFeeds

    11 Feb 2025

    15 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  4. CVE-2025-1144 School Affairs System from Quanxun has an Exposure of Sensitive Information, allowing unauthenticated attackers to view specific pages and obtain database information aโ€ฆ https://t.co/fCPl3Ry6yB

    @CVEnew

    11 Feb 2025

    331 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  5. [CVE-2025-1144: CRITICAL] Quanxun's School Affairs System has a critical security flaw exposing sensitive data, allowing unauthorized access to admin credentials & database info. #CyberSecurity#cybersecurity,#vulnerability https://t.co/xejWFds5lG https://t.co/GhEpaJzRbR

    @CveFindCom

    11 Feb 2025

    17 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes