CVE-2025-9598 | itsourcecode Apartment Management System 1.0 /setting/year_setup.php txtXYear sql injection
A vulnerability identified as critical has been detected in itsourcecode Apartment Management System 1.0. Affected is an unknown function of the file /setting/year_setup.php. Performing manipulation of the argument txtXYear results in sql injection.
This vulnerability is identified as CVE-2025-9598. The attack can be initiated remotely. Additionally, an exploit exists.