CVE-2025-0881: Codezips Gym Management System saveroutine.php sql injection
A vulnerability was found in Codezips Gym Management System 1.0. It has been classified as critical. Affected is an unknown function of the file /dashboard/admin/saveroutine.php. The manipulation of the argument rname leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-0881?
CVE-2025-0881 is classified as a critical vulnerability.
What type of vulnerability is CVE-2025-0881?
CVE-2025-0881 is an SQL injection vulnerability affecting the Codezips Gym Management System.
Which function is affected by CVE-2025-0881?
The vulnerability affects an unknown function in the file /dashboard/admin/saveroutine.php.
How do I fix CVE-2025-0881?
To fix CVE-2025-0881, you should sanitize and validate user inputs to prevent SQL injection attacks.
Is remote exploitation possible with CVE-2025-0881?
Yes, CVE-2025-0881 can be exploited remotely due to its SQL injection nature.