Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Kerjo

#25797of 53,624
9.8Total CVSS
Vulnerabilities · 1
PT-2025-33070
9.8
2025-08-13
Itsourcecode · Sports Club Management System · CVE-2025-8925
Name of the Vulnerable Software and Affected Versions: itsourcecode Sports Management System version 1.0 Description: A SQL injection issue exists in itsourcecode Sports Management System 1.0. The vulnerability is located in the `/Admin/match.php` file, specifically through the manipulation of the `code` argument. This allows for remote exploitation. The exploit details have been publicly disclosed. Recommendations: As a temporary workaround, restrict access to the `/Admin/match.php` file. Sanitize the `code` parameter before using it in SQL queries. At the moment, there is no information about a newer version that contains a fix for this vulnerability.