CVE-2025-10396Injection in PET Grooming Management Software

Severity
6.9MEDIUMNVD
EPSS
0.0%
top 90.82%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 14

Description

A vulnerability was determined in SourceCodester Pet Grooming Management Software 1.0. Affected by this issue is some unknown functionality of the file /admin/edit_role.php. Executing manipulation of the argument ID can lead to sql injection. It is possible to launch the attack remotely. The exploit has been publicly disclosed and may be utilized.

CVSS vector

CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N

🔴Vulnerability Details

2
GHSA
GHSA-vpv7-qgw2-qqmp: A vulnerability was determined in SourceCodester Pet Grooming Management Software 12025-09-14
CVEList
SourceCodester Pet Grooming Management Software edit_role.php sql injection2025-09-14
CVE-2025-10396 — Injection | cvebase