CNNVD-202509-1118 Information

CNNVD ID

CNNVD-202509-1118

CVE-2025-10078

  • CNNVD Published: 2025-09-08

Description (Chinese)

SourceCodester Online Polling System Code是SourceCodester开源的一个在线投票系统。 SourceCodester Online Polling System 1.0版本存在SQL注入漏洞,该漏洞源于/admin/candidates.php文件参数处理不当,可能导致SQL注入攻击。

Description (English)

ServiceCode is an online voting system open to ServiceCodester. SourceCodester Online Polling System Version 1.0 contains an injection loophole in SQL, which arises from/admin/candidates.php document parameters being mistreated and may lead to an attack on SQL injection.

Hazard Level

Medium

Vulnerability Type

SQL注入

Affected Vendor

SourceCodester

Published

2025-09-08

Last Modified

2026-02-24

References

https://vuldb.com/?submit.644623 https://github.com/ganzhi-qcy/cve/issues/21 https://vuldb.com/?ctiid.323026 https://www.sourcecodester.com/ https://vuldb.com/?id.323026 https://access.redhat.com/security/cve/cve-2025-10078

Share on: