CVE-2025-9419: itsourcecode Apartment Management System addunit.php sql injection
A vulnerability was detected in itsourcecode Apartment Management System 1.0. The affected element is an unknown function of the file /unit/addunit.php. Performing manipulation of the argument ID results in sql injection. The attack can be initiated remotely. The exploit is now public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-9419?
CVE-2025-9419 has been evaluated as a high severity vulnerability due to the potential for SQL injection attacks.
How do I fix CVE-2025-9419?
To fix CVE-2025-9419, ensure proper input validation and use prepared statements to mitigate SQL injection risks.
Who is affected by CVE-2025-9419?
CVE-2025-9419 affects all users of the itsourcecode Apartment Management System version 1.0.
Can CVE-2025-9419 be exploited remotely?
Yes, CVE-2025-9419 can be exploited remotely through manipulation of the argument ID in the vulnerable PHP file.
What impact does CVE-2025-9419 have?
CVE-2025-9419 can lead to unauthorized data exposure, modification, or deletion through successful SQL injection.