CVE-2025-7605 Information

Description

A vulnerability was found in code-projects AVL Rooms 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /profile.php. The manipulation of the argument first_name leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

Reference

https://github.com/sunhuiHi666/cve/issues/2 https://vuldb.com/?ctiid.316304 https://vuldb.com/?id.316304 https://vuldb.com/?submit.615340 https://code-projects.org/ https://github.com/sunhuiHi666/cve/issues/2

CNNVD-202507-1876 (Published: 2025-07-14)

Share on: