CVE-2025-4725: itsourcecode Placement Management System view_drive.php sql injection
Published May 15, 2025
·Updated
A vulnerability, which was classified as critical, was found in itsourcecode Placement Management System 1.0. This affects an unknown part of the file /viewdrive.php. The manipulation of the argument ID leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
2 affected components
itsourcecode Placement Management System
Angeljudesuarez Placement Management System=1.0
Event History
May 15, 2025
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-4725?
CVE-2025-4725 is classified as a critical vulnerability.
2
How does CVE-2025-4725 affect the Placement Management System?
CVE-2025-4725 affects the /view_drive.php file and allows for SQL injection via manipulated arguments.
3
Can CVE-2025-4725 be exploited remotely?
Yes, CVE-2025-4725 can be exploited remotely.
4
What is the impact of exploiting CVE-2025-4725?
Exploiting CVE-2025-4725 can allow attackers to execute arbitrary SQL commands in the database.
5
How can CVE-2025-4725 be mitigated?
To mitigate CVE-2025-4725, sanitize and validate all user inputs, especially those used in database queries.