A vulnerability was found in itsourcecode Inventory Management System 1.0. The impacted element is an unknown function of the file /index.php?q=product. Performing manipulation of the argument PROID results in sql injection. It is possible to initiate the attack remotely. The exploit has been made public and could be used.
Metrics
Affected Vendors & Products
References
History
Mon, 17 Nov 2025 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Itsourcecode
Itsourcecode inventory Management System |
|
| Vendors & Products |
Itsourcecode
Itsourcecode inventory Management System |
Sun, 16 Nov 2025 03:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in itsourcecode Inventory Management System 1.0. The impacted element is an unknown function of the file /index.php?q=product. Performing manipulation of the argument PROID results in sql injection. It is possible to initiate the attack remotely. The exploit has been made public and could be used. | |
| Title | itsourcecode Inventory Management System index.php sql injection | |
| Weaknesses | CWE-74 CWE-89 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-11-16T03:02:06.655Z
Updated: 2025-11-16T03:02:06.655Z
Reserved: 2025-11-15T06:29:31.371Z
Link: CVE-2025-13234
No data.
Status : Awaiting Analysis
Published: 2025-11-16T03:15:59.907
Modified: 2025-11-18T14:06:55.963
Link: CVE-2025-13234
No data.