PT-2025-51114 · Code Projects · Prison Management System

Zakka

·

Published

2025-12-13

·

Updated

2025-12-18

·

CVE-2025-14590

CVSS v3.1
9.8
VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions code-projects Prison Management System version 2.0
Description A security issue exists in code-projects Prison Management System 2.0. The vulnerability is due to the manipulation of the
keyname
argument in the file '/admin/search1.php', which can lead to SQL injection. This allows for remote exploitation. The exploit has been publicly disclosed. The vulnerable function is unknown.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Special Elements Injection

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2025-14590

Affected Products

Prison Management System