Security Advisory

CVE-2025-26157

5.9
MEDIUM

Vulnerability Description

A SQL Injection vulnerability was found in /bpms/index.php in Source Code and Project Beauty Parlour Management System V1.1, which allows remote attackers to execute arbitrary code via the name POST request parameter.
Published Date February 14, 2025
Official Source NIST NVD Advisory