Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2025-67405

Quick assessment

Affected
n/a n/a
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

SourceCodester CASAP Automated Enrollment System是SourceCodester社区的一款自动注册系统。 Sourcecodester CASAP Automated Enrollment System 1.0版本存在安全漏洞,该漏洞源于update_password.php文件中的参数new_password容易受到SQL注入攻击。

AI Predicted 8.1 Difficulty: Easy EPSS 0.29% · P19

Possible ATT&CK Techniques 1 AI

T1190 · Exploit Public-Facing Application

Affected Version Matrix 1

VendorProduct Version RangeStatus
n/a n/a n/a affected
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2025-67405

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: CVE Program / CVE List V5
Vulnerability Description
Sourcecodester CASAP Automated Enrollment System 1.0 is vulnerable to SQL Injection in update_password.php via the parameter new_password.
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
Sourcecodester CASAP Automated Enrollment System 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
SourceCodester CASAP Automated Enrollment System是SourceCodester社区的一款自动注册系统。 Sourcecodester CASAP Automated Enrollment System 1.0版本存在安全漏洞,该漏洞源于update_password.php文件中的参数new_password容易受到SQL注入攻击。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

Vendor Product Affected Versions CPE Subscribe
- n/a n/a -

II. Public POCs for CVE-2025-67405

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2025-67405

请登录查看更多情报信息。

Proof of Concept for CVE-2025-67405 (1)

Same Patch Batch · n/a · 2026-07-29 · 16 CVEs total

CVE-2026-18022 8.8 HIGH pgvector buffer overflow via integer wraparound in IVFFlat index build on 32-bit systems
CVE-2025-60931 Infor Global HR 授权问题漏洞
CVE-2026-50782 Jinher OA C6 安全漏洞
CVE-2025-65340 Kishan Lal Hospital Management System 安全漏洞
CVE-2025-65337 SourceCodester Fantastic Blog CMS 安全漏洞
CVE-2025-69942 Kishan Lal Hospital Management System 安全漏洞
CVE-2025-69943 Kishan Lal Hospital Management System 安全漏洞
CVE-2025-67404 Sourcecodester CASAP Automated Enrollment System 安全漏洞
CVE-2025-67403 Sourcecodester CASAP Automated Enrollment System 安全漏洞
CVE-2025-67407 Sourcecodester CASAP Automated Enrollment System 安全漏洞
CVE-2025-67406 SourceCodester Advocate office management system 安全漏洞
CVE-2025-67408 SourceCodester CASAP Automated Enrollment System 安全漏洞
CVE-2025-69949 Kishan Lal Hospital Management 安全漏洞
CVE-2025-69944 Kishan Lal Hospital Management System 安全漏洞
CVE-2025-69945 Kishan Lal Hospital Management System 安全漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2025-67405

No comments yet


Leave a comment