CVE-2025-0532: Codezips Gym Management System new_submit.php sql injection
A vulnerability was found in Codezips Gym Management System 1.0. It has been classified as critical. Affected is an unknown function of the file /dashboard/admin/newsubmit.php. The manipulation of the argument mid leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-0532?
CVE-2025-0532 has been classified as critical due to its potential for SQL injection attacks.
How do I fix CVE-2025-0532?
To fix CVE-2025-0532, it is recommended to sanitize user inputs and implement prepared statements to prevent SQL injection.
What type of vulnerability is CVE-2025-0532?
CVE-2025-0532 is an SQL injection vulnerability affecting the Codezips Gym Management System.
Can CVE-2025-0532 be exploited remotely?
Yes, CVE-2025-0532 can be exploited remotely through the manipulation of the 'm_id' argument.
Which software is affected by CVE-2025-0532?
CVE-2025-0532 affects Codezips Gym Management System version 1.0.