CVE-2025-3195: itsourcecode Online Blood Bank Management System bbms.php sql injection
A vulnerability, which was classified as critical, has been found in itsourcecode Online Blood Bank Management System 1.0. This issue affects some unknown processing of the file /bbms.php. The manipulation of the argument Search leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-3195?
CVE-2025-3195 is classified as a critical vulnerability affecting the Online Blood Bank Management System.
How does CVE-2025-3195 affect the system?
CVE-2025-3195 leads to SQL injection vulnerabilities due to improper handling of the Search argument in the file /bbms.php.
How can I mitigate CVE-2025-3195?
To mitigate CVE-2025-3195, it is recommended to sanitize and parameterize all user inputs before processing them in SQL queries.
Which software version is affected by CVE-2025-3195?
CVE-2025-3195 affects version 1.0 of the itsourcecode Online Blood Bank Management System.
Can CVE-2025-3195 lead to data breaches?
Yes, due to the SQL injection vulnerability in CVE-2025-3195, it could potentially lead to unauthorized data access and data breaches.