Edubusinesssolutions maintains a focused web-based educational software product line, with Print Shop Pro WebDesk as the principal exposure point; despite a narrow product scope, this software carries pronounced architectural risk through its reliance on web-facing input handling and privilege-management boundaries. The vendor's disclosures cluster around a durable set of application-layer flaws—cross-site scripting, CSRF, SQL injection, improper input validation, and privilege-management weaknesses—that skew toward critical-severity outcomes and reflect common patterns in educational administration and content-management platforms. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Edubusinesssolutions over time
Signals from CVEs in this vendor scope (6 CVEs).
6 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-61548CRITICAL SQL Injection is present on the hfInventoryDistFormID parameter in the /PSP/appNET/Store/CartV12.aspx/GetUnitPrice endpoint in edu Business Solutions Print Shop Pro WebDesk version | Jan 8, 2026 | 9.8 | 31 | NO | NO |
CVE-2026-26725CRITICAL An issue in edu Business Solutions Print Shop Pro WebDesk v.18.34 (fixed in 19.76) allows a remote attacker to escalate privileges via the AccessID parameter. | Feb 20, 2026 | 9.8 | 29 | NO | NO |
CVE-2025-61546CRITICAL There is an issue on the /PSP/appNET/Store/CartV12.aspx/GetUnitPrice endpoint in edu Business Solutions Print Shop Pro WebDesk version 18.34 (fixed in 19.69) that enables remote at | Jan 8, 2026 | 9.1 | 27 | NO | NO |
CVE-2025-61547MEDIUM Cross-Site Request Forgery (CSRF) is present on all functions in edu Business Solutions Print Shop Pro WebDesk version 18.34 (fixed in 19.76). The application does not implement pr | Jan 8, 2026 | 6.8 | 22 | NO | NO |
CVE-2025-61549MEDIUM Cross-Site Scripting (XSS) is present on the LoginID parameter on the /PSP/app/web/reg/reg_display.asp endpoint in edu Business Solutions Print Shop Pro WebDesk version 18.34 (fixe | Jan 8, 2026 | 6.1 | 21 | NO | NO |
CVE-2025-61550MEDIUM Cross-Site Scripting (XSS) is present on the ctl00_Content01_fieldValue parameters on the /psp/appNet/TemplateOrder/TemplatePreview.aspx endpoint in edu Business Solutions Print Sh | Jan 8, 2026 | 5.4 | 19 | NO | NO |
Signals from CVEs in this vendor scope (6 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Edubusinesssolutions.
Media articles that mention a CVE ID that affects a product developed by Edubusinesssolutions — matched by CVE ID, not by vendor name.