CVE-2025-4881: itsourcecode Restaurant Management System user_save.php sql injection
A vulnerability was found in itsourcecode Restaurant Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /admin/usersave.php. The manipulation of the argument username/name leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-4881?
CVE-2025-4881 is classified as critical due to its potential for SQL injection vulnerabilities.
How do I fix CVE-2025-4881?
To fix CVE-2025-4881, sanitize user inputs and implement prepared statements to prevent SQL injection in the /admin/user_save.php file.
What is affected by CVE-2025-4881?
CVE-2025-4881 affects the itsourcecode Restaurant Management System version 1.0.
What type of vulnerability is CVE-2025-4881?
CVE-2025-4881 is an SQL injection vulnerability that arises from improper handling of the username/name argument.
What are the potential impacts of CVE-2025-4881?
The potential impacts of CVE-2025-4881 include unauthorized access to sensitive data and the ability to manipulate the database.