CVE-2025-3822
A vulnerability was found in SourceCodester Web-based Pharmacy Product Management System 1.0. It has been rated as probl
A vulnerability was found in SourceCodester Web-based Pharmacy Product Management System 1.0. It has been rated as problematic. This issue affects some unknown processing of the file changepassword.php.
The manipulation of the argument txtconfirm_password/txtnew_password/txtold_password leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
LOW · CVSS 2.4
EPSS 0.00069
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0