CVE-2025-2602: SourceCodester Kortex Lite Advocate Office Management System deactivate_reg.php sql injection
A vulnerability has been found in SourceCodester Kortex Lite Advocate Office Management System 1.0 and classified as critical. This vulnerability affects unknown code of the file deactivatereg.php. The manipulation of the argument ID leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-2602?
CVE-2025-2602 is classified as a critical severity vulnerability.
How do I fix CVE-2025-2602?
To fix CVE-2025-2602, you should sanitize and validate the input parameters in the deactivate_reg.php file to prevent SQL injection.
What type of attack is associated with CVE-2025-2602?
CVE-2025-2602 is associated with SQL injection attacks due to improper handling of the ID parameter.
Which software is affected by CVE-2025-2602?
CVE-2025-2602 affects SourceCodester Kortex Lite Advocate Office Management System version 1.0.
What is the potential impact of CVE-2025-2602?
The potential impact of CVE-2025-2602 includes unauthorized access to the database, which can lead to data leakage or manipulation.