CVE-2025-2604: SourceCodester Kortex Lite Advocate Office Management System edit_act.php sql injection
A vulnerability was found in SourceCodester Kortex Lite Advocate Office Management System 1.0. It has been classified as critical. Affected is an unknown function of the file editact.php. The manipulation of the argument ID leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-2604?
CVE-2025-2604 has been classified as critical due to its potential for SQL injection vulnerabilities.
How do I fix CVE-2025-2604?
To fix CVE-2025-2604, input validation and parameterized queries should be implemented to mitigate SQL injection risks.
What systems are affected by CVE-2025-2604?
CVE-2025-2604 affects the SourceCodester Kortex Lite Advocate Office Management System version 1.0.
What type of attack is possible with CVE-2025-2604?
CVE-2025-2604 allows for SQL injection attacks through the manipulation of the argument ID in the edit_act.php file.
Is CVE-2025-2604 publicly known?
Yes, CVE-2025-2604 is publicly disclosed and documented as a critical vulnerability.