VYPR
High severity8.1NVD Advisory· Published Dec 9, 2025· Updated Jul 5, 2026

CVE-2025-65594

CVE-2025-65594

Description

OpenSIS 9.2 and below is vulnerable to Incorrect Access Control in Student.php, which allows an authenticated low-privilege user to perform unauthorized database write operations relating to the data of other users.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • openSIS/openSIScpe-rescue2 versions
    (expand)+ 1 more
    • (no CPE)
    • (no CPE)range: <=9.2

Patches

Vulnerability mechanics

News mentions

0

No linked articles in our index yet.