CVE-2025-8173: 1000 Projects ABC Courier Management System Add_reciver.php sql injection
A vulnerability has been found in 1000 Projects ABC Courier Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /Addreciver.php. The manipulation of the argument recivername leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-8173?
CVE-2025-8173 is classified as a critical severity vulnerability.
How do I fix CVE-2025-8173?
To mitigate CVE-2025-8173, it is recommended to sanitize and validate user input for the reciver_name parameter in the Add_reciver.php file to prevent SQL injection.
Which systems are affected by CVE-2025-8173?
CVE-2025-8173 affects version 1.0 of the 1000 Projects ABC Courier Management System.
What type of attack does CVE-2025-8173 allow?
CVE-2025-8173 allows for SQL injection attacks through manipulation of the reciver_name argument.
Can CVE-2025-8173 be exploited remotely?
Yes, CVE-2025-8173 can be exploited remotely if the affected system is accessible over the network.