A security flaw has been discovered in SourceCodester Best Salon Management System 1.0. This affects an unknown part of the file /panel/add_invoice.php. Performing manipulation of the argument ServiceId results in sql injection. Remote exploitation of the attack is possible. The exploit has been released to the public and may be exploited.
Metrics
Affected Vendors & Products
References
History
Sat, 11 Oct 2025 21:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A security flaw has been discovered in SourceCodester Best Salon Management System 1.0. This affects an unknown part of the file /panel/add_invoice.php. Performing manipulation of the argument ServiceId results in sql injection. Remote exploitation of the attack is possible. The exploit has been released to the public and may be exploited. | |
Title | SourceCodester Best Salon Management System add_invoice.php sql injection | |
Weaknesses | CWE-74 CWE-89 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-10-11T21:32:06.052Z
Reserved: 2025-10-10T15:12:47.321Z
Link: CVE-2025-11615

No data.

Status : Received
Published: 2025-10-11T22:15:32.790
Modified: 2025-10-11T22:15:32.790
Link: CVE-2025-11615

No data.

No data.