CNNVD-202506-3684 Information

CNNVD ID

CNNVD-202506-3684

CVE-2025-6861

  • CNNVD Published: 2025-06-29

Description (Chinese)

SourceCodester Best Salon Management System是SourceCodester开源的一个沙龙管理系统。 SourceCodester Best Salon Management System 1.0版本存在注入漏洞,该漏洞源于对文件/panel/add_plan.php中参数plan_name/description/duration_days/price的错误操作导致SQL注入。

Description (English)

SourceCodester Best Salon Management System is a Sharon management system that is an open source for SourceCodester. SourceCodester Best Salon Management System Version 1.0 has an injection loophole, which results from an error in the use of the parameter plan name/description/dration days/price in the file/panel/add plan.php.

Hazard Level

High

Vulnerability Type

注入

Affected Vendor

SourceCodester

Published

2025-06-29

Last Modified

2026-02-24

References

https://vuldb.com/?submit.603375 https://github.com/Colorado-all/cve/blob/main/Best%20salon%20management%20system/SQL-13.md https://vuldb.com/?ctiid.314333 https://www.sourcecodester.com/ https://vuldb.com/?id.314333 https://access.redhat.com/security/cve/cve-2025-6861

Share on: