A security flaw has been discovered in itsourcecode Online Petshop Management System 1.0. The affected element is an unknown function of the file availableframe.php of the component Admin Dashboard. The manipulation of the argument name/address results in cross site scripting. It is possible to launch the attack remotely. The exploit has been released to the public and may be exploited.
History

Mon, 22 Sep 2025 16:45:00 +0000

Type Values Removed Values Added
First Time appeared Facebook-riares
Facebook-riares online Petshop Management System
CPEs cpe:2.3:a:facebook-riares:online_petshop_management_system:1.0:*:*:*:*:*:*:*
Vendors & Products Facebook-riares
Facebook-riares online Petshop Management System

Thu, 18 Sep 2025 14:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 18 Sep 2025 12:45:00 +0000

Type Values Removed Values Added
First Time appeared Itsourcecode
Itsourcecode online Petshop Management System
Vendors & Products Itsourcecode
Itsourcecode online Petshop Management System

Thu, 18 Sep 2025 01:45:00 +0000

Type Values Removed Values Added
Description A security flaw has been discovered in itsourcecode Online Petshop Management System 1.0. The affected element is an unknown function of the file availableframe.php of the component Admin Dashboard. The manipulation of the argument name/address results in cross site scripting. It is possible to launch the attack remotely. The exploit has been released to the public and may be exploited.
Title itsourcecode Online Petshop Management System Admin Dashboard availableframe.php cross site scripting
Weaknesses CWE-79
CWE-94
References
Metrics cvssV2_0

{'score': 4, 'vector': 'AV:N/AC:L/Au:S/C:N/I:P/A:N/E:POC/RL:ND/RC:UR'}

cvssV3_0

{'score': 3.5, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N/E:P/RL:X/RC:R'}

cvssV3_1

{'score': 3.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N/E:P/RL:X/RC:R'}

cvssV4_0

{'score': 5.1, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:P'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published: 2025-09-18T01:02:08.088Z

Updated: 2025-09-18T13:23:00.177Z

Reserved: 2025-09-17T12:12:40.243Z

Link: CVE-2025-10632

cve-icon Vulnrichment

Updated: 2025-09-18T13:22:44.994Z

cve-icon NVD

Status : Analyzed

Published: 2025-09-18T02:15:40.070

Modified: 2025-09-20T02:36:46.670

Link: CVE-2025-10632

cve-icon Redhat

No data.