CNNVD-202511-1927 Information

CNNVD ID

CNNVD-202511-1927

CVE-2025-13276

  • CNNVD Published: 2025-11-17

Description (Chinese)

g33kyrash Online Banking System是g33kyrash个人开发者的一款使用PHP和MySQL开发的网上银行系统。 g33kyrash Online Banking System存在SQL注入漏洞,该漏洞源于对文件/index.php中参数Username的错误操作,可能导致SQL注入。

Description (English)

G33kyrash Online Banking Systems is a web-based banking system developed by G33kyrash Personal Developer using PHP and MySQL. g33kyrash Online Banking System has an injection loophole in SQL, which results from an error in Username, the parameter in file/index.php, which may lead to SQL injection.

Hazard Level

Medium

Vulnerability Type

SQL注入

Affected Vendor

个人开发者

Published

2025-11-17

Last Modified

2026-02-24

References

https://github.com/Nianalb/Report_Online-Banking-System/blob/main/SQL.docx https://vuldb.com/?ctiid.332611 https://vuldb.com/?submit.690087 https://vuldb.com/?id.332611 https://access.redhat.com/security/cve/cve-2025-13276

Share on: