Security Advisory

CVE-2025-9730

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-08-31 13:02:06
Last updated 2025-09-02 15:14:36
Assigner VulDB
CVSS score 6.9
State PUBLISHED

Description

A vulnerability was found in itsourcecode Apartment Management System 1.0. The affected element is an unknown function of the file /ajax/updateProfile.php. The manipulation of the argument user_id results in sql injection. It is possible to launch the attack remotely. The exploit has been made public and could be used.