PT-2025-51841 · Itsourcecode · Covid Tracking System Using Qr-Code

Bardminx

·

Published

2025-12-17

·

Updated

2026-01-02

·

CVE-2025-67285

CVSS v3.1

7.3

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions ITSourcecode COVID Tracking System Using QR-Code version 1.0
Description A SQL injection issue exists in the '/cts/admin/?page=zone' file. The issue occurs because malicious code can be injected through the id parameter and directly used in SQL queries without proper sanitization or validation.
Recommendations Apply appropriate cleaning or validation to the id parameter before using it in SQL queries.

Exploit

Fix

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2025-67285

Affected Products

Covid Tracking System Using Qr-Code