CVE-2025-13267: SourceCodester Dental Clinic Appointment Reservation System success.php sql injection
A vulnerability was detected in SourceCodester Dental Clinic Appointment Reservation System 1.0. Impacted is an unknown function of the file /success.php. Performing manipulation of the argument username/password results in sql injection. The attack can be initiated remotely. The exploit is now public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-13267?
CVE-2025-13267 is classified as a high severity vulnerability due to the potential for remote SQL injection attacks.
How do I fix CVE-2025-13267?
To fix CVE-2025-13267, ensure that all user inputs are properly sanitized and parameterized queries are used to prevent SQL injection.
What type of vulnerability is CVE-2025-13267?
CVE-2025-13267 is a SQL injection vulnerability found in the SourceCodester Dental Clinic Appointment Reservation System.
Can CVE-2025-13267 be exploited remotely?
Yes, CVE-2025-13267 can be exploited remotely, allowing attackers to manipulate the username and password parameters.
Which software is affected by CVE-2025-13267?
CVE-2025-13267 affects SourceCodester Dental Clinic Appointment Reservation System version 1.0.