A weakness has been identified in itsourcecode Online Discussion Forum 1.0. Affected by this issue is some unknown functionality of the file /members/compose_msg.php. This manipulation of the argument ID causes sql injection. The attack is possible to be carried out remotely. The exploit has been made available to the public and could be exploited.
Metrics
Affected Vendors & Products
References
History
Thu, 18 Sep 2025 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A weakness has been identified in itsourcecode Online Discussion Forum 1.0. Affected by this issue is some unknown functionality of the file /members/compose_msg.php. This manipulation of the argument ID causes sql injection. The attack is possible to be carried out remotely. The exploit has been made available to the public and could be exploited. | |
| Title | itsourcecode Online Discussion Forum compose_msg.php sql injection | |
| Weaknesses | CWE-74 CWE-89 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-09-18T13:02:10.036Z
Updated: 2025-09-18T13:19:11.612Z
Reserved: 2025-09-18T05:30:12.659Z
Link: CVE-2025-10667
No data.
Status : Awaiting Analysis
Published: 2025-09-18T13:15:35.560
Modified: 2025-09-18T13:43:34.310
Link: CVE-2025-10667
No data.