CNNVD-202507-747 Information

CNNVD ID

CNNVD-202507-747

CVE-2025-7137

  • CNNVD Published: 2025-07-07

Description (Chinese)

SourceCodester Best Salon Management System是SourceCodester开源的一个沙龙管理系统。 SourceCodester Best Salon Management System 1.0版本存在注入漏洞,该漏洞源于文件/panel/schedule-staff.php中参数staff_id处理不当,可能导致SQL注入攻击。

Description (English)

SourceCodester Best Salon Management System is a Sharon management system that is an open source for SourceCodester. SourceCodester Best Salon Management System Version 1.0 has an injection loophole, which stems from the inappropriate handling of the parameter Staff id in the document/panel/schedule-staff.php, which may lead to an SQL injection attack.

Hazard Level

High

Vulnerability Type

注入

Affected Vendor

SourceCodester

Published

2025-07-07

Last Modified

2026-02-24

References

https://github.com/Colorado-all/cve/blob/main/Best%20salon%20management%20system/SQL-22.md https://vuldb.com/?ctiid.315051 https://vuldb.com/?id.315051 https://www.sourcecodester.com/ https://vuldb.com/?submit.605984 https://access.redhat.com/security/cve/cve-2025-7137

Share on: