CVE-2025-4463 | itsourcecode Gym Management System 1.0 ajax.php?action=save_package ID sql injection
A vulnerability marked as critical has been reported in itsourcecode Gym Management System 1.0. This issue affects some unknown processing of the file /ajax.php?action=save_package. The manipulation of the argument ID leads to sql injection.
This vulnerability is documented as CVE-2025-4463. The attack can be initiated remotely. Additionally, an exploit exists.