CVE-2025-10076: SourceCodester Online Polling System manage-profile.php sql injection
A weakness has been identified in SourceCodester Online Polling System 1.0. This affects an unknown function of the file /manage-profile.php. This manipulation of the argument email causes sql injection. The attack may be initiated remotely. The exploit has been made available to the public and could be exploited.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-10076?
CVE-2025-10076 is classified as a high severity vulnerability due to its potential for remote SQL injection.
How do I fix CVE-2025-10076?
To fix CVE-2025-10076, you should implement proper input validation and parameterized queries to prevent SQL injection.
What systems are affected by CVE-2025-10076?
CVE-2025-10076 affects SourceCodester Online Polling System version 1.0 specifically in the file /manage-profile.php.
Can CVE-2025-10076 be exploited remotely?
Yes, CVE-2025-10076 can be exploited remotely, allowing attackers to manipulate the email argument.
What are the potential impacts of CVE-2025-10076?
The exploitation of CVE-2025-10076 can lead to unauthorized access, data leakage, or modification of the database.