CVE-2025-3684 | Xianqi Kindergarten Management System 2.0 Bulid 20190808 Child Management stu_list.php sex sql injection
A vulnerability was found in Xianqi Kindergarten Management System 2.0 Bulid 20190808. It has been rated as critical. This issue affects some unknown processing of the file stu_list.php of the component Child Management. The manipulation of the argument sex leads to sql injection.
The identification of this vulnerability is CVE-2025-3684. The attack may be initiated remotely. Furthermore, there is an exploit available.
Other parameters might be affected as well.