CVE-2025-2390: code-projects Blood Bank Management System add_donor.php sql injection
A vulnerability classified as critical has been found in code-projects Blood Bank Management System 1.0. This affects an unknown part of the file /userdashboard/adddonor.php. The manipulation leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-2390?
CVE-2025-2390 is classified as a critical severity vulnerability due to its potential impact on SQL injection.
What type of attack does CVE-2025-2390 enable?
CVE-2025-2390 enables SQL injection attacks which can be initiated remotely.
What part of the Blood Bank Management System is affected by CVE-2025-2390?
CVE-2025-2390 affects the file /user_dashboard/add_donor.php in the Blood Bank Management System.
How can I fix CVE-2025-2390?
To fix CVE-2025-2390, it is recommended to implement input validation and use parameterized queries to prevent SQL injection.
Is CVE-2025-2390 exploitable by remote attackers?
Yes, CVE-2025-2390 can be exploited by remote attackers due to its nature of SQL injection vulnerability.