itsourcecode E-Logbook with Health Monitoring System for COVID-19是itsourcecode开源的一个新冠肺炎健康监测系统电子日志系统。 itsourcecode E-Logbook with Health Monitoring System for COVID-19 1.0版本存在SQL注入漏洞,该漏洞源于对文件/check_profile.php中参数profile_id的错误操作,可能导致SQL注入攻击。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| itsourcecode | E-Logbook with Health Monitoring System for COVID-19 | 1.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2025-10667 | 7.3 HIGH | itsourcecode Online Discussion Forum compose_msg.php sql injection |
| CVE-2025-10668 | 7.3 HIGH | itsourcecode Online Discussion Forum compose_msg_admin.php sql injection |
| CVE-2025-10673 | 7.3 HIGH | itsourcecode Student Information Management System index.php sql injection |
| CVE-2025-10631 | 3.5 LOW | itsourcecode Online Petshop Management System Available Products addcnp.php cross site scr |
| CVE-2025-10632 | 3.5 LOW | itsourcecode Online Petshop Management System Admin Dashboard availableframe.php cross sit |
No comments yet