A vulnerability was determined in SourceCodester Online Student Clearance System 1.0. The affected element is an unknown function of the file /Admin/delete-fee.php of the component Fee Table Handler. Executing manipulation of the argument ID can lead to improper authorization. The attack may be performed from remote. The exploit has been publicly disclosed and may be utilized.
History

Tue, 09 Dec 2025 18:45:00 +0000

Type Values Removed Values Added
First Time appeared Senior-walter
Senior-walter online Student Clearance System
CPEs cpe:2.3:a:senior-walter:online_student_clearance_system:1.0:*:*:*:*:*:*:*
Vendors & Products Senior-walter
Senior-walter online Student Clearance System

Tue, 09 Dec 2025 10:15:00 +0000

Type Values Removed Values Added
First Time appeared Sourcecodester
Sourcecodester online Student Clearance System
Vendors & Products Sourcecodester
Sourcecodester online Student Clearance System

Mon, 08 Dec 2025 18:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 08 Dec 2025 00:30:00 +0000

Type Values Removed Values Added
Description A vulnerability was determined in SourceCodester Online Student Clearance System 1.0. The affected element is an unknown function of the file /Admin/delete-fee.php of the component Fee Table Handler. Executing manipulation of the argument ID can lead to improper authorization. The attack may be performed from remote. The exploit has been publicly disclosed and may be utilized.
Title SourceCodester Online Student Clearance System Fee Table delete-fee.php improper authorization
Weaknesses CWE-266
CWE-285
References
Metrics cvssV2_0

{'score': 6.4, 'vector': 'AV:N/AC:L/Au:N/C:N/I:P/A:P/E:POC/RL:ND/RC:UR'}

cvssV3_0

{'score': 6.5, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L/E:P/RL:X/RC:R'}

cvssV3_1

{'score': 6.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L/E:P/RL:X/RC:R'}

cvssV4_0

{'score': 6.9, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N/E:P'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published: 2025-12-08T00:02:06.916Z

Updated: 2025-12-08T17:11:37.718Z

Reserved: 2025-12-07T08:02:14.254Z

Link: CVE-2025-14206

cve-icon Vulnrichment

Updated: 2025-12-08T17:01:34.590Z

cve-icon NVD

Status : Analyzed

Published: 2025-12-08T01:16:00.130

Modified: 2025-12-09T18:35:52.350

Link: CVE-2025-14206

cve-icon Redhat

No data.