CVE-2025-14833: code-projects Online Appointment Booking System deletemanagerclinic.php sql injection
A security flaw has been discovered in code-projects Online Appointment Booking System 1.0. The impacted element is an unknown function of the file /admin/deletemanagerclinic.php. Performing manipulation of the argument clinic results in sql injection. The attack can be initiated remotely. The exploit has been released to the public and may be exploited.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-14833?
CVE-2025-14833 has a high severity due to its potential for SQL injection attacks.
How do I fix CVE-2025-14833?
To mitigate CVE-2025-14833, implement parameterized queries to prevent SQL injection vulnerabilities.
Which software is affected by CVE-2025-14833?
CVE-2025-14833 affects Code-projects Online Appointment Booking System version 1.0.
What type of attack is possible with CVE-2025-14833?
CVE-2025-14833 allows attackers to perform SQL injection via manipulated input in the delete manager clinic function.
When was CVE-2025-14833 disclosed?
CVE-2025-14833 was disclosed in 2025 as a serious security vulnerability.