← CVE Tracker
7.3HIGH

CVE-2025-10599 — A security flaw has been discovered in itsourcecode Web-Based Internet Laboratory Management System 1.0.

Itsourcecode · Web-Based Internet Laboratory Management System · Published 17 Sept 2025 · Modified 26 Sept 2026

Description

A security flaw has been discovered in itsourcecode Web-Based Internet Laboratory Management System 1.0. Impacted is the function User::AuthenticateUser of the file login.php. Performing manipulation of the argument user_email results in sql injection. Remote exploitation of the attack is possible. The exploit has been released to the public and may be exploited.

References

What to do
  1. Check whether Web-Based Internet Laboratory Management System is in your asset inventory.
  2. Patch in the next maintenance window; prioritise internet-facing systems.
  3. Record the decision in your risk register for audit evidence.
Alert me on similar CVEs →
Share

Link: adminadda.com/cve/CVE-2025-10599