PT-2025-38256 · Itsourcecode · Itsourcecode E-Logbook With Health Monitoring System For Covid-19
Lizis3C
·
Published
2025-09-17
·
Updated
2025-09-18
·
CVE-2025-10614
CVSS v3.1
6.1
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
itsourcecode E-Logbook with Health Monitoring System for COVID-19 version 1.0
Description
A cross-site scripting issue exists due to manipulation of the
profile id argument in the /print reports prev.php file. This allows for remote attacks. The exploit has been publicly disclosed.Recommendations
As a temporary workaround, consider restricting access to the
/print reports prev.php file until a patch is available.
Sanitize the profile id argument to prevent the injection of malicious scripts.Exploit
Fix
XSS
Code Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Itsourcecode E-Logbook With Health Monitoring System For Covid-19