CVE-2025-10800: itsourcecode Online Discussion Forum index.php sql injection
A weakness has been identified in itsourcecode Online Discussion Forum 1.0. The impacted element is an unknown function of the file /index.php. Executing manipulation of the argument email/password can lead to sql injection. The attack can be executed remotely. The exploit has been made available to the public and could be exploited.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-10800?
CVE-2025-10800 is considered a high severity vulnerability due to its potential for SQL injection exploits.
How do I fix CVE-2025-10800?
To fix CVE-2025-10800, ensure proper input validation and parameterized queries in the affected /index.php file.
What software is affected by CVE-2025-10800?
CVE-2025-10800 affects itsourcecode Online Discussion Forum version 1.0.
Can CVE-2025-10800 be exploited remotely?
Yes, CVE-2025-10800 can be exploited remotely, allowing unauthenticated attackers to manipulate the input.
What type of vulnerability is CVE-2025-10800?
CVE-2025-10800 is classified as an SQL injection vulnerability.