CVE-2025-9599 | itsourcecode Apartment Management System 1.0 /setting/month_setup.php txtMonthName sql injection
A vulnerability labeled as critical has been found in itsourcecode Apartment Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /setting/month_setup.php. Executing manipulation of the argument txtMonthName can lead to sql injection.
This vulnerability is tracked as CVE-2025-9599. The attack can be launched remotely. Moreover, an exploit is present.