CVE-2025-9421: itsourcecode Apartment Management System addcomplain.php sql injection
A vulnerability has been found in itsourcecode Apartment Management System 1.0. This affects an unknown function of the file /complain/addcomplain.php. The manipulation of the argument ID leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-9421?
CVE-2025-9421 is classified as a high severity vulnerability due to its potential for SQL injection attacks.
How do I fix CVE-2025-9421?
To fix CVE-2025-9421, you should implement parameterized queries or prepared statements in the /complain/addcomplain.php file to prevent SQL injection.
Who is affected by CVE-2025-9421?
CVE-2025-9421 affects users of the itsourcecode Apartment Management System version 1.0.
What type of vulnerability is CVE-2025-9421?
CVE-2025-9421 is an SQL injection vulnerability that allows attackers to manipulate database queries.
Can CVE-2025-9421 be exploited remotely?
Yes, CVE-2025-9421 can be exploited remotely, allowing attackers to execute unauthorized SQL commands.