CVE-2025-45956: ORETNOM23 Computer Laboratory Management System

High severity, CVSS 8.8. EPSS: 0.5% chance of exploitation in the next 30 days.

A SQL injection vulnerability in manage_damage.php in Sourcecodester Computer Laboratory Management System v1.0 allows an authenticated attacker to execute arbitrary SQL commands via the "id" parameter

Affected products

  • ORETNOM23 Computer Laboratory Management System: version 1.0 only

Published 2025-04-29. Last modified 2026-06-17.