Security Advisory
CVE-2025-13270
6.3
MEDIUM
Vulnerability Description
A vulnerability was found in Campcodes School Fees Payment Management System 1.0. This affects an unknown function of the file /ajax.php?action=save_course. The manipulation of the argument ID results in sql injection. The attack may be launched remotely. The exploit has been made public and could be used.
Published Date
November 17, 2025
Official Source
NIST NVD Advisory