CVE-2025-9471: itsourcecode Apartment Management System add_maintenance_cost.php sql injection
A vulnerability has been found in itsourcecode Apartment Management System 1.0. This vulnerability affects unknown code of the file /maintenance/addmaintenancecost.php. The manipulation of the argument ID leads to sql injection. Remote exploitation of the attack is possible. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-9471?
CVE-2025-9471 is identified as a critical SQL injection vulnerability due to its potential for remote exploitation.
How do I fix CVE-2025-9471?
To fix CVE-2025-9471, sanitize and validate input parameters in the /maintenance/add_maintenance_cost.php file to prevent SQL injection.
Which versions of the Apartment Management System are affected by CVE-2025-9471?
CVE-2025-9471 affects version 1.0 of the itsourcecode Apartment Management System.
Can CVE-2025-9471 be exploited remotely?
Yes, CVE-2025-9471 allows for remote exploitation through SQL injection.
What type of vulnerability is CVE-2025-9471?
CVE-2025-9471 is a SQL injection vulnerability that allows attackers to manipulate the database via unsanitized input.