A vulnerability was found in code-projects Medical Store Management System 1.0. This issue affects some unknown processing of the file UpdateCompany.java of the component Update Company Page. The manipulation of the argument companyNameTxt leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
References
Link | Resource |
---|---|
https://code-projects.org/ | Product |
https://vuldb.com/?ctiid.319889 | Permissions Required VDB Entry |
https://vuldb.com/?id.319889 | Third Party Advisory VDB Entry |
https://vuldb.com/?submit.631663 | Third Party Advisory VDB Entry |
https://www.yuque.com/gongzi-jsnek/xb2q3a/uv3gmxc8tpmbg4vw#vulnerability-details-and-poc | Exploit Third Party Advisory |
https://www.yuque.com/gongzi-jsnek/xb2q3a/uv3gmxc8tpmbg4vw?singleDoc | Exploit Third Party Advisory |
Configurations
History
14 Aug 2025, 17:41
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.8 |
CPE | cpe:2.3:a:fabian:medical_store_management_system:1.0:*:*:*:*:*:*:* | |
First Time |
Fabian medical Store Management System
Fabian |
|
References | () https://code-projects.org/ - Product | |
References | () https://vuldb.com/?id.319889 - Third Party Advisory, VDB Entry | |
References | () https://vuldb.com/?submit.631663 - Third Party Advisory, VDB Entry | |
References | () https://www.yuque.com/gongzi-jsnek/xb2q3a/uv3gmxc8tpmbg4vw?singleDoc - Exploit, Third Party Advisory | |
References | () https://vuldb.com/?ctiid.319889 - Permissions Required, VDB Entry | |
References | () https://www.yuque.com/gongzi-jsnek/xb2q3a/uv3gmxc8tpmbg4vw#vulnerability-details-and-poc - Exploit, Third Party Advisory |
14 Aug 2025, 03:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-08-14 03:15
Updated : 2025-08-14 17:41
NVD link : CVE-2025-8930
Mitre link : CVE-2025-8930
JSON object : View
Products Affected
fabian
- medical_store_management_system