CNNVD-202508-1825 Information

CNNVD ID

CNNVD-202508-1825

CVE-2025-9021

  • CNNVD Published: 2025-08-15

Description (Chinese)

SourceCodester Online Bank Management System是SourceCodester开源的一个在线银行管理系统。 SourceCodester Online Bank Management System 1.0及之前版本存在注入漏洞,该漏洞源于文件/bank/transfer.php中参数email处理不当导致SQL注入。

Description (English)

SourceCodester Online Bank Management System is an online banking management system that is an open source for ServiceCodester. SourceCodester Online Bank Management System 1.0 and previous versions had an injection loophole, which originated from the mishandling of the parameter email in the document/bank/transfer.php, resulting in the SQL injection.

Hazard Level

Medium

Vulnerability Type

注入

Affected Vendor

SourceCodester

Published

2025-08-15

Last Modified

2026-02-24

References

https://vuldb.com/?submit.631861 https://www.sourcecodester.com/ https://vuldb.com/?id.320086 https://vuldb.com/?ctiid.320086 https://nvd.nist.gov/vuln/detail/CVE-2025-9021 https://access.redhat.com/security/cve/cve-2025-9021

Patch

https://www.sourcecodester.com/php/15373/online-banking-management-system-php-free-source-code.html

Share on: