5.1
/ 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Description
A security vulnerability has been detected in itsourcecode Inventory Management System 1.0. This impacts an unknown function of the file /admin/products/index.php?view=add. Such manipulation of the argument PROMODEL leads to sql injection. The attack may be performed from remote. The exploit has been disclosed publicly and may be used.
Basic Information
ID
CVE-2025-13210
Source
VulDB
Published
Nov 15, 2025 at 19:02
Affected Product
Vendor
itsourcecode
Product
Inventory Management System
Version
1.0
Affected Versions
itsourcecode Inventory Management System 1.0