Beveiligingsadvies

CVE-2025-0872

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-01-30 16:00:18
Laatst bijgewerkt 2025-01-30 16:18:05
Toegewezen door VulDB
CVSS-score 6.5
Status PUBLISHED

Beschrijving

A vulnerability classified as critical has been found in itsourcecode Tailoring Management System 1.0. Affected is an unknown function of the file /addpayment.php. The manipulation of the argument id/amount/desc/inccat leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.