Medium severity4.3NVD Advisory· Published Apr 22, 2025· Updated Jun 17, 2026
CVE-2025-3849
CVE-2025-3849
Description
A vulnerability classified as problematic was found in YXJ2018 SpringBoot-Vue-OnlineExam 1.0. This vulnerability affects unknown code of the file /api/studentPWD. The manipulation of the argument studentId leads to unverified password change. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- YXJ2018/SpringBoot-Vue-OnlineExamv5Range: 1.0
Patches
Vulnerability mechanics
References
4- github.com/YXJ2018/SpringBoot-Vue-OnlineExam/issues/74nvdExploitIssue TrackingVendor Advisory
- vuldb.comnvdThird Party AdvisoryVDB Entry
- vuldb.comnvdThird Party AdvisoryVDB Entry
- vuldb.comnvdPermissions RequiredVDB Entry
News mentions
0No linked articles in our index yet.