CVE-2025-4485 | itsourcecode Gym Management System 1.0 ajax.php?action=delete_trainer ID sql injection
A vulnerability has been found in itsourcecode Gym Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /ajax.php?action=delete_trainer. Performing manipulation of the argument ID results in sql injection.
This vulnerability is cataloged as CVE-2025-4485. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.