PT-2025-21582 · Unknown · Itsourcecode Placement Management System

Lena-Lyy

·

Publicado

2025-05-15

·

Atualizado

2025-05-16

·

CVE-2025-4726

CVSS v3.1

9.8

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: itsourcecode Placement Management System version 1.0
Description: A critical issue has been discovered, affecting the /view student.php file, where manipulation of the ID argument leads to SQL injection. This can be initiated remotely.
Recommendations: For itsourcecode Placement Management System version 1.0, consider restricting access to the /view student.php file until a patch is available. As a temporary workaround, avoid using the ID argument in the affected file to minimize the risk of exploitation.

Exploit

Correção

Special Elements Injection

SQL injection

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2025-4726

Produtos afetados

Itsourcecode Placement Management System