CVE-2025-7587: code-projects Online Appointment Booking System cover.php sql injection
A vulnerability was found in code-projects Online Appointment Booking System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /cover.php. The manipulation of the argument uname/psw leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-7587?
CVE-2025-7587 has been rated as critical.
How do I fix CVE-2025-7587?
To fix CVE-2025-7587, it is recommended to sanitize and validate user inputs to prevent SQL injection.
What type of vulnerability is CVE-2025-7587?
CVE-2025-7587 is a SQL injection vulnerability affecting the Online Appointment Booking System.
Which software is affected by CVE-2025-7587?
CVE-2025-7587 affects the Online Appointment Booking System by code-projects.
What are the potential consequences of CVE-2025-7587?
Exploitation of CVE-2025-7587 could lead to unauthorized access to the database and manipulation of sensitive data.