Metrics
Affected Vendors & Products
Tue, 28 Oct 2025 02:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:codeastro:gym_management_system:1.0:*:*:*:*:*:*:* |
Mon, 27 Oct 2025 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Codeastro
Codeastro gym Management System |
|
| Vendors & Products |
Codeastro
Codeastro gym Management System |
Mon, 27 Oct 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 27 Oct 2025 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in CodeAstro Gym Management System 1.0. This affects an unknown function of the file /admin/actions/remove-announcement.php. Performing manipulation of the argument ID results in sql injection. The attack can be initiated remotely. The exploit has been made public and could be used. | |
| Title | CodeAstro Gym Management System remove-announcement.php sql injection | |
| Weaknesses | CWE-74 CWE-89 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-10-27T10:02:14.597Z
Updated: 2025-10-27T13:23:02.540Z
Reserved: 2025-10-26T05:39:08.383Z
Link: CVE-2025-12261
Updated: 2025-10-27T13:22:57.946Z
Status : Analyzed
Published: 2025-10-27T10:15:39.003
Modified: 2025-10-28T02:09:55.067
Link: CVE-2025-12261
No data.