First published: Sun May 18 2025(Updated: )
A vulnerability classified as critical has been found in itsourcecode Restaurant Management System 1.0. This affects an unknown part of the file /admin/member_update.php. The manipulation of the argument menu leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
itsourcecode Restaurant Management System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-4869 is classified as a critical severity vulnerability.
CVE-2025-4869 is an SQL injection vulnerability affecting the /admin/member_update.php file.
To fix CVE-2025-4869, sanitize and parametrize all user inputs in the menu argument in the affected file.
Yes, CVE-2025-4869 can be exploited remotely by manipulating the menu argument.
CVE-2025-4869 affects the itsourcecode Restaurant Management System version 1.0.