Search Results (2 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2025-12932 1 Sourcecodester 1 Baby Care System 2025-11-10 4.7 Medium
A vulnerability was determined in SourceCodester Baby Care System 1.0. Affected by this issue is some unknown functionality of the file /admin.php?id=inbox. This manipulation of the argument msgid causes sql injection. The attack can be initiated remotely. The exploit has been publicly disclosed and may be utilized.
CVE-2025-12933 1 Sourcecodester 1 Baby Care System 2025-11-10 6.3 Medium
A vulnerability was identified in SourceCodester Baby Care System 1.0. This affects an unknown part of the file /updatewelcome.php?id=siteoptions&action=welcome. Such manipulation of the argument roleid leads to sql injection. The attack can be launched remotely. The exploit is publicly available and might be used.