CVE-2025-4488
09.05.2025, 20:15
A vulnerability was found in itsourcecode Gym Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /ajax.php?action=delete_package. The manipulation of the argument ID leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Vendor | Product | Version |
---|---|---|
adrianmercurio | gym_management_system | 1.0 |
𝑥
= Vulnerable software versions