CVE-2025-13561: SourceCodester Company Website CMS index.php sql injection
A vulnerability was determined in SourceCodester Company Website CMS 1.0. This vulnerability affects unknown code of the file /admin/index.php. This manipulation of the argument Username causes sql injection. Remote exploitation of the attack is possible. The exploit has been publicly disclosed and may be utilized.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-13561?
The severity of CVE-2025-13561 has not been officially classified, but it involves a SQL injection vulnerability which can pose significant security risks.
How do I fix CVE-2025-13561?
To fix CVE-2025-13561, input validation and parameterized queries should be implemented to prevent SQL injection vulnerabilities.
What software is affected by CVE-2025-13561?
CVE-2025-13561 affects SourceCodester Company Website CMS version 1.0.
Can CVE-2025-13561 be exploited remotely?
Yes, CVE-2025-13561 can be exploited remotely due to its SQL injection nature.
What files are involved in CVE-2025-13561?
The vulnerable file involved in CVE-2025-13561 is /admin/index.php.