CNNVD-202510-3593 Information

CNNVD ID

CNNVD-202510-3593

CVE-2025-12261

  • CNNVD Published: 2025-10-27

Description (Chinese)

CodeAstro Gym Management System是CodeAstro公司的一个健身房管理系统。 CodeAstro Gym Management System 1.0版本存在SQL注入漏洞,该漏洞源于对文件/admin/actions/remove-announcement.php中参数ID的错误操作,可能导致SQL注入攻击。

Description (English)

CodeAstro Gym Management System is a gymnasium management system for CodeAstro. The CodeAstro Gym Management System Version 1.0 contains an injection loophole in SQL, which stems from an error in the operation of parameter ID in the document/admin/actions/remove-announcement.php, which could lead to an attack on SQL injection.

Hazard Level

High

Vulnerability Type

SQL注入

Affected Vendor

CodeAstro

Published

2025-10-27

Last Modified

2026-02-24

References

https://github.com/JeromClown/cve/issues/1 https://vuldb.com/?submit.674022 https://codeastro.com/ https://vuldb.com/?ctiid.329932 https://vuldb.com/?id.329932

Share on: