CVE-2025-3245: itsourcecode Library Management System Forgot.java search sql injection
A vulnerability was found in itsourcecode Library Management System 1.0. It has been rated as critical. Affected by this issue is the function Search of the file librarymanagement/src/LibraryManagement/Forgot.java. The manipulation of the argument txtuname leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-3245?
CVE-2025-3245 is rated as critical due to a serious SQL injection vulnerability in the Library Management System.
How do I fix CVE-2025-3245?
To fix CVE-2025-3245, validate and sanitize user input for the txtuname parameter to prevent SQL injection.
Which version of the Library Management System is affected by CVE-2025-3245?
CVE-2025-3245 affects version 1.0 of the itsourcecode Library Management System.
What type of vulnerability is CVE-2025-3245?
CVE-2025-3245 is an SQL injection vulnerability found in the search function of the system.
What area of the code is impacted by CVE-2025-3245?
CVE-2025-3245 impacts the function Search located in the file Forgot.java of the Library Management System.