CNNVD-202506-3687 Information

CNNVD ID

CNNVD-202506-3687

CVE-2025-6860

  • CNNVD Published: 2025-06-29

Description (Chinese)

SourceCodester Best Salon Management System是SourceCodester开源的一个沙龙管理系统。 SourceCodester Best Salon Management System 1.0版本存在注入漏洞,该漏洞源于对文件/panel/staff_commision.php中参数fromdate/todate的错误操作导致SQL注入。

Description (English)

SourceCodester Best Salon Management System is a Sharon management system that is an open source for SourceCodester. SourceCodester Best Salon Management System Version 1.0 has an injection loophole, which results from a mishandling of the parameter fromdate/todate in the file/panel/staff commission.php.

Hazard Level

High

Vulnerability Type

注入

Affected Vendor

SourceCodester

Published

2025-06-29

Last Modified

2026-02-24

References

https://vuldb.com/?submit.603374 https://vuldb.com/?id.314332 https://github.com/Colorado-all/cve/blob/main/Best%20salon%20management%20system/SQL-12.md https://vuldb.com/?ctiid.314332 https://www.sourcecodester.com/ https://access.redhat.com/security/cve/cve-2025-6860

Share on: