First published: Fri Mar 21 2025(Updated: )
A vulnerability was found in SourceCodester Kortex Lite Advocate Office Management System 1.0. It has been classified as critical. Affected is an unknown function of the file edit_act.php. The manipulation of the argument ID leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Kortex Lite Advocate Office Management System | ||
Mayurik Advocate Office Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-2604 has been classified as critical due to its potential for SQL injection vulnerabilities.
To fix CVE-2025-2604, input validation and parameterized queries should be implemented to mitigate SQL injection risks.
CVE-2025-2604 affects the SourceCodester Kortex Lite Advocate Office Management System version 1.0.
CVE-2025-2604 allows for SQL injection attacks through the manipulation of the argument ID in the edit_act.php file.
Yes, CVE-2025-2604 is publicly disclosed and documented as a critical vulnerability.