Vulnerability Description
A flaw has been found in varunsardana004 Blood-Bank-And-Donation-Management-System up to dc9e0393d826fbc85fad9755b5bc12cba1919df2. The impacted element is an unknown function of the file /donate_blood.php. Executing manipulation of the argument fullname can lead to sql injection. The attack may be performed from remote. The exploit has been published and may be used. This product utilizes a rolling release system for continuous delivery, and as such, version information for affected or updated releases is not disclosed.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Varunsardana004 | Blood Bank And Donation Management System | <= 2021-03-18 |
Related Weaknesses (CWE)
References
- https://github.com/sanin-s1r3n/CVE-Research/blob/main/CVE-3ExploitThird Party Advisory
- https://vuldb.com/?ctiid.327599Permissions RequiredVDB Entry
- https://vuldb.com/?id.327599Third Party AdvisoryVDB Entry
- https://vuldb.com/?submit.667394Third Party AdvisoryVDB Entry
- https://github.com/sanin-s1r3n/CVE-Research/blob/main/CVE-3ExploitThird Party Advisory
- https://vuldb.com/?submit.667394Third Party AdvisoryVDB Entry
FAQ
What is CVE-2025-11481?
CVE-2025-11481 is a vulnerability with a CVSS score of 6.3 (MEDIUM). A flaw has been found in varunsardana004 Blood-Bank-And-Donation-Management-System up to dc9e0393d826fbc85fad9755b5bc12cba1919df2. The impacted element is an unknown function of the file /donate_blood...
How severe is CVE-2025-11481?
CVE-2025-11481 has been rated MEDIUM with a CVSS base score of 6.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-11481?
Check the references section above for vendor advisories and patch information. Affected products include: Varunsardana004 Blood Bank And Donation Management System.