CVE-2025-9002 | Surbowl dormitory-management-php 1.0 login.php Account sql injection (EUVD-2025-24964)
A vulnerability was found in Surbowl dormitory-management-php 1.0 and classified as critical. The impacted element is an unknown function of the file login.php. Such manipulation of the argument Account leads to sql injection. This vulnerability only affects products that are no longer supported by the maintainer.
This vulnerability is referenced as CVE-2025-9002. It is possible to launch the attack remotely. Furthermore, an exploit is available.