First published: Sun Apr 20 2025(Updated: )
A vulnerability was found in SourceCodester Web-based Pharmacy Product Management System 1.0. It has been declared as problematic. This vulnerability affects unknown code of the file add-admin.php. The manipulation of the argument txtpassword/txtfullname/txtemail leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
SourceCodester Web-based Pharmacy Product Management System | ||
Seniorwalter Web-based Pharmacy Product Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-3821 has been declared as problematic, indicating a serious vulnerability.
To fix CVE-2025-3821, ensure that input validation is properly implemented for the parameters txtpassword, txtfullname, and txtemail.
CVE-2025-3821 affects the add-admin.php file of the SourceCodester Web-based Pharmacy Product Management System.
CVE-2025-3821 is categorized as a cross-site scripting (XSS) vulnerability.
CVE-2025-3821 impacts the SourceCodester Web-based Pharmacy Product Management System version 1.0.