First published: Sun May 18 2025(Updated: )
A vulnerability has been found in itsourcecode Restaurant Management System 1.0 and classified as critical. This vulnerability affects unknown code of the file /admin/finished.php. The manipulation of the argument ID leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
itsourcecode Restaurant Management System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-4864 is classified as a critical vulnerability.
To fix CVE-2025-4864, sanitize and validate user inputs to prevent SQL injection vulnerabilities.
CVE-2025-4864 allows for remote SQL injection attacks due to improper handling of the ID argument.
CVE-2025-4864 affects the itsourcecode Restaurant Management System 1.0.
The vulnerability CVE-2025-4864 is found in the file /admin/finished.php.