CVE-2023-25432: Online Reviewer Management System Project Online Reviewer Management System

High severity, CVSS 7.2. EPSS: 0.7% chance of exploitation in the next 30 days.

An issue was discovered in Online Reviewer Management System v1.0. There is a SQL injection that can directly issue instructions to the background database system via reviewer_0/admins/assessments/course/course-update.php.

Affected products

Published 2023-02-28. Last modified 2026-06-17.