CVE-2025-12606 | itsourcecode Online Loan Management System 1.0 /manage_borrower.php ID sql injection (EUVD-2025-37450 / CNNVD-202511-043)
A vulnerability was found in itsourcecode Online Loan Management System 1.0. It has been classified as critical. This issue affects some unknown processing of the file /manage_borrower.php. This manipulation of the argument ID causes sql injection.
This vulnerability is registered as CVE-2025-12606. Remote exploitation of the attack is possible. Furthermore, an exploit is available.