CVE-2025-10077: SourceCodester Online Polling System registeracc.php sql injection
A security vulnerability has been detected in SourceCodester Online Polling System 1.0. This impacts an unknown function of the file /registeracc.php. Such manipulation of the argument email leads to sql injection. The attack may be launched remotely. The exploit has been disclosed publicly and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-10077?
CVE-2025-10077 is classified as a critical severity vulnerability due to its potential for remote SQL injection attacks.
How do I fix CVE-2025-10077?
To fix CVE-2025-10077, sanitize and validate all inputs in the /registeracc.php file to prevent SQL injection.
What types of attacks can exploit CVE-2025-10077?
CVE-2025-10077 can be exploited through remote SQL injection attacks, allowing attackers to manipulate the database.
Which software is affected by CVE-2025-10077?
CVE-2025-10077 affects SourceCodester Online Polling System version 1.0.
Can CVE-2025-10077 be exploited remotely?
Yes, CVE-2025-10077 can be exploited remotely, making it particularly dangerous for exposed servers.