CVE-2025-45751: XSS
Published May 5, 2025
·Updated
SourceCodester Web Based Pharmacy Product Management System 1.0 is vulnerable to Cross Site Scripting (XSS) in add-admin.php via the Fullname text field.
Affected Software
2 affected components
Senior-walter Web-based Pharmacy Product Management System=1.0
Sourcecodester Web Based Pharmacy Product Management System
Event History
May 5, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Mar 6, 57321
Event
via FIRST·12:24 AM
Frequently Asked Questions
1
What is the severity of CVE-2025-45751?
CVE-2025-45751 is classified as a medium severity vulnerability due to its potential for Cross Site Scripting (XSS) attacks.
2
How do I fix CVE-2025-45751?
To fix CVE-2025-45751, sanitize and validate user inputs in the Fullname text field within add-admin.php to prevent XSS.
3
What software is affected by CVE-2025-45751?
CVE-2025-45751 affects SourceCodester Web Based Pharmacy Product Management System version 1.0.
4
What type of vulnerability is CVE-2025-45751?
CVE-2025-45751 is a Cross Site Scripting (XSS) vulnerability.
5
How can CVE-2025-45751 be exploited?
CVE-2025-45751 can be exploited by injecting malicious scripts through the Fullname text field, impacting users visiting the affected application.