CVE-2025-10118: itsourcecode E-Logbook with Health Monitoring System for COVID-19 login.php sql injection
A security vulnerability has been detected in itsourcecode E-Logbook with Health Monitoring System for COVID-19 1.0. The affected element is an unknown function of the file /login.php. The manipulation of the argument Username leads to sql injection. The attack is possible to be carried out remotely. The exploit has been disclosed publicly and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-10118?
CVE-2025-10118 is classified as a high severity vulnerability due to its potential for SQL injection.
How do I fix CVE-2025-10118?
To mitigate CVE-2025-10118, ensure that proper input validation and parameterized queries are implemented in the /login.php file.
What type of vulnerability is CVE-2025-10118?
CVE-2025-10118 is an SQL injection vulnerability that affects the /login.php file of the itsourcecode E-Logbook.
Which software is affected by CVE-2025-10118?
CVE-2025-10118 affects the itsourcecode E-Logbook with Health Monitoring System for COVID-19 version 1.0.
Can CVE-2025-10118 lead to data breaches?
Yes, CVE-2025-10118 can potentially lead to unauthorized access to sensitive data through SQL injection attacks.