Security Advisory

CVE-2025-1856

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-03-03 07:31:06
Last updated 2025-03-03 14:26:02
Assigner VulDB
State PUBLISHED

Description

A vulnerability was found in Codezips Gym Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /dashboard/admin/gen_invoice.php. The manipulation of the argument id leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.