First published: Sun Apr 20 2025(Updated: )
A vulnerability was found in SourceCodester Web-based Pharmacy Product Management System 1.0. It has been rated as problematic. This issue affects some unknown processing of the file changepassword.php. The manipulation of the argument txtconfirm_password/txtnew_password/txtold_password leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
SourceCodester Web-based Pharmacy Product Management System | ||
Seniorwalter Web-based Pharmacy Product Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-3822 has been rated as problematic.
CVE-2025-3822 affects the file changepassword.php in the SourceCodester Web-based Pharmacy Product Management System.
CVE-2025-3822 involves manipulation of arguments related to password changes which could lead to potential unauthorized access.
To fix CVE-2025-3822, ensure proper validation and sanitization of user input in the changepassword.php file.
Yes, CVE-2025-3822 is a known vulnerability affecting the SourceCodester Web-based Pharmacy Product Management System.