CVE-2025-7126 Information

Description

A vulnerability which was classified as critical has been found in itsourcecode Employee Management System up to 1.0. Affected by this issue is some unknown functionality of the file /admin/adminprofile.php. The manipulation of the argument AdminName leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

Reference

https://github.com/manyufann/CVE/issues/2 https://itsourcecode.com/ https://vuldb.com/?ctiid.315038 https://vuldb.com/?id.315038 https://vuldb.com/?submit.605934 https://github.com/manyufann/CVE/issues/2

CNNVD-202507-675 (Published: 2025-07-07)

Share on: