CVE-2025-3383
A vulnerability was found in SourceCodester Web-based Pharmacy Product Management System 1.0 and classified as critical.
A vulnerability was found in SourceCodester Web-based Pharmacy Product Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /search/search_sales.php. The manipulation of the argument Name leads to sql injection.
The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
HIGH · CVSS 7.3
EPSS 0.00447
Act now
- Public exploit or PoC is available
- SSVC automatable: yes - attacks can be scripted at scale
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0