CVE-2025-9644: SQL Injection in itsourcecode Apartment Management System
A vulnerability was determined in itsourcecode Apartment Management System 1.0. Affected by this issue is some unknown functionality of the file /setting/bill_setup.php. Executing manipulation of the argument txtBillType can lead to sql injection. It is possible to launch the attack remotely. The exploit has been publicly disclosed and may be utilized.
CVE-2025-9644: SQL Injection in itsourcecode Apartment Management System
Description
A vulnerability was determined in itsourcecode Apartment Management System 1.0. Affected by this issue is some unknown functionality of the file /setting/bill_setup.php. Executing manipulation of the argument txtBillType can lead to sql injection. It is possible to launch the attack remotely. The exploit has been publicly disclosed and may be utilized.
Technical Details
- Data Version
- 5.1
- Assigner Short Name
- VulDB
- Date Reserved
- 2025-08-29T05:59:07.928Z
- Cvss Version
- 4.0
- State
- PUBLISHED
Threat ID: 68b1a4f8ad5a09ad0077dbdd
Added to database: 8/29/2025, 1:02:48 PM
Last updated: 8/29/2025, 1:02:48 PM
Views: 1
Related Threats
CVE-2025-9645: SQL Injection in itsourcecode Apartment Management System
MediumCVE-2025-9643: SQL Injection in itsourcecode Apartment Management System
MediumCVE-2025-40705: CWE-79 Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') in ACDH-CH OpenAtlas
MediumCVE-2025-40704: CWE-79 Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') in ACDH-CH OpenAtlas
MediumCVE-2025-40703: CWE-79 Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') in ACDH-CH OpenAtlas
MediumActions
Need enhanced features?
Contact root@offseq.com for Pro access with improved analysis and higher rate limits.