6.9
/ 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Description
A vulnerability has been found in itsourcecode Sports Management System 1.0. The affected element is an unknown function of the file /Admin/tournament_details.php. Such manipulation of the argument ID leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Basic Information
ID
CVE-2025-9765
Source
VulDB
Published
Sep 1, 2025 at 06:02
Affected Product
Vendor
itsourcecode
Product
Sports Management System
Version
1.0
Affected Versions
itsourcecode Sports Management System 1.0