CVE-2025-0535: Codezips Gym Management System edit_mem_submit.php sql injection
A vulnerability classified as critical has been found in Codezips Gym Management System 1.0. This affects an unknown part of the file /dashboard/admin/editmemsubmit.php. The manipulation of the argument uid leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-0535?
CVE-2025-0535 is classified as a critical vulnerability.
What type of vulnerability is CVE-2025-0535?
CVE-2025-0535 is a SQL injection vulnerability found in the Codezips Gym Management System.
How can attackers exploit CVE-2025-0535?
Attackers can exploit CVE-2025-0535 remotely by manipulating the 'uid' parameter in the edit_mem_submit.php file.
How do I fix CVE-2025-0535?
To fix CVE-2025-0535, sanitize and validate all user inputs, especially those passed to SQL queries.
Which application is affected by CVE-2025-0535?
CVE-2025-0535 affects the Codezips Gym Management System version 1.0.