5.3
/ 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Description
A vulnerability was detected in itsourcecode COVID Tracking System 1.0. This affects an unknown function of the file /admin/?page=establishment. The manipulation of the argument ID results in sql injection. It is possible to launch the attack remotely. The exploit is now public and may be used.
Basic Information
ID
CVE-2025-13567
Source
VulDB
Published
Nov 23, 2025 at 20:02
Affected Product
Vendor
itsourcecode
Product
COVID Tracking System
Version
1.0
Affected Versions
itsourcecode COVID Tracking System 1.0