CVE-2025-0947: itsourcecode Tailoring Management System expview.php sql injection
A vulnerability, which was classified as critical, has been found in itsourcecode Tailoring Management System 1.0. Affected by this issue is some unknown functionality of the file expview.php. The manipulation of the argument expid leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-0947?
CVE-2025-0947 is classified as a critical vulnerability.
What type of vulnerability is CVE-2025-0947?
CVE-2025-0947 is an SQL injection vulnerability affecting the expview.php file.
How do I fix CVE-2025-0947?
To mitigate CVE-2025-0947, sanitize and validate user inputs for the expid argument to prevent SQL injection.
Which system is affected by CVE-2025-0947?
CVE-2025-0947 affects the itsourcecode Tailoring Management System version 1.0.
What can be the impact of exploiting CVE-2025-0947?
Exploiting CVE-2025-0947 can lead to unauthorized access to the database and data manipulation.