Metrics
Affected Vendors & Products
Wed, 16 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Fri, 16 May 2025 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Adrianmercurio
Adrianmercurio gym Management System |
|
| CPEs | cpe:2.3:a:adrianmercurio:gym_management_system:1.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Adrianmercurio
Adrianmercurio gym Management System |
Fri, 09 May 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 09 May 2025 06:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in itsourcecode Gym Management System 1.0. It has been classified as critical. This affects an unknown part of the file /ajax.php?action=save_payment. The manipulation of the argument registration_id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. | |
| Title | itsourcecode Gym Management System ajax.php sql injection | |
| Weaknesses | CWE-74 CWE-89 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-05-09T06:00:07.029Z
Updated: 2025-05-09T15:49:55.537Z
Reserved: 2025-05-08T19:12:56.847Z
Link: CVE-2025-4466
Updated: 2025-05-09T15:49:50.674Z
Status : Analyzed
Published: 2025-05-09T06:15:38.657
Modified: 2025-05-16T15:35:40.447
Link: CVE-2025-4466
No data.
ReportizFlow