CVE-2025-22924 | OS4ED openSIS up to 9.1 Student.php stu_id sql injection
A vulnerability was found in OS4ED openSIS up to 9.1. It has been declared as critical. This vulnerability affects unknown code of the file /modules/students/Student.php. The manipulation of the argument stu_id leads to sql injection.
This vulnerability was named CVE-2025-22924. The attack can be initiated remotely. There is no exploit available.