Medium severity4.3NVD Advisory· Published Sep 27, 2025· Updated Apr 29, 2026
CVE-2025-11080
CVE-2025-11080
Description
A security vulnerability has been detected in zhuimengshaonian wisdom-education up to 1.0.4. This vulnerability affects the function selectStudentExamInfoList of the file src/main/java/com/education/api/controller/student/ExamInfoController.java. Such manipulation of the argument subjectId leads to improper authorization. It is possible to launch the attack remotely. The exploit has been disclosed publicly and may be used.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2<=1.0.4+ 1 more
- (no CPE)range: <=1.0.4
- (no CPE)range: <=1.0.4
Patches
Vulnerability mechanics
References
5News mentions
0No linked articles in our index yet.