CNNVD-202508-3649 Information

CNNVD ID

CNNVD-202508-3649

CVE-2025-9704

  • CNNVD Published: 2025-08-30

Description (Chinese)

SourceCodester Water Billing System是SourceCodester开源的一个水计费系统。 SourceCodester Water Billing System 1.0版本存在安全漏洞,该漏洞源于对文件/viewbill.php中参数ID的错误操作导致SQL注入。

Description (English)

SourceCodester Water Billing Systems is a water metering system for the open source of ServiceCodester. Security breach for version 1.0 of SourceCodester Water Billing System, which results from an error in the performance of parameter ID in file/viewbil.php resulting in the injection of SQL.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

SourceCodester

Published

2025-08-30

Last Modified

2026-02-24

References

https://www.sourcecodester.com/ https://vuldb.com/?submit.639225 https://vuldb.com/?id.321925 https://vuldb.com/?ctiid.321925 https://github.com/0510green-hand/cve/issues/6 https://access.redhat.com/security/cve/cve-2025-9704 https://nvd.nist.gov/vuln/detail/CVE-2025-9704

Patch

https://www.sourcecodester.com/php/14560/water-billing-system-phpmysqli-full-source-code.html

Share on: