📦 Best Salon Management System

by Mayurik

🔍 What is Best Salon Management System?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-12325

HIGH CVSS 7.3 Oct 27, 2025

This SQL injection vulnerability in SourceCodester Best Salon Management System 1.0 allows attackers to manipulate database queries through the email parameter in the forgot password functionality. Re...

CVE-2025-11662

HIGH CVSS 7.3 Oct 13, 2025

This CVE describes a SQL injection vulnerability in SourceCodester Best Salon Management System 1.0. Attackers can manipulate the serv_id parameter in /booking.php to execute arbitrary SQL commands re...

CVE-2025-11614

HIGH CVSS 7.3 Oct 11, 2025

This SQL injection vulnerability in SourceCodester Best Salon Management System 1.0 allows attackers to manipulate database queries through the editid parameter in /panel/edit-appointment.php. Attacke...

CVE-2025-6879

MEDIUM CVSS 6.3 Jun 30, 2025

This critical SQL injection vulnerability in SourceCodester Best Salon Management System 1.0 allows attackers to manipulate database queries through the Name parameter in /panel/add-tax.php. Remote at...

CVE-2025-6877

MEDIUM CVSS 6.3 Jun 30, 2025

This critical SQL injection vulnerability in SourceCodester Best Salon Management System 1.0 allows remote attackers to execute arbitrary SQL commands via the editid parameter in /panel/edit-category....

CVE-2025-6875

MEDIUM CVSS 6.3 Jun 29, 2025

This critical SQL injection vulnerability in SourceCodester Best Salon Management System 1.0 allows remote attackers to execute arbitrary SQL commands via the editid parameter in /panel/edit-subscript...

CVE-2025-6862

MEDIUM CVSS 6.3 Jun 29, 2025

This critical SQL injection vulnerability in SourceCodester Best Salon Management System 1.0 allows remote attackers to execute arbitrary SQL commands via the editid parameter in /panel/edit_plan.php....

CVE-2025-6860

MEDIUM CVSS 6.3 Jun 29, 2025

This critical SQL injection vulnerability in SourceCodester Best Salon Management System 1.0 allows remote attackers to execute arbitrary SQL commands via the fromdate/todate parameters in /panel/staf...

CVE-2025-6609

MEDIUM CVSS 6.3 Jun 25, 2025

This is a critical SQL injection vulnerability in SourceCodester Best Salon Management System 1.0. Attackers can remotely exploit the /panel/bwdates-reports-details.php file by manipulating fromdate/t...

CVE-2025-6605

MEDIUM CVSS 6.3 Jun 25, 2025

This critical SQL injection vulnerability in SourceCodester Best Salon Management System 1.0 allows remote attackers to execute arbitrary SQL commands via the editid parameter in /panel/edit-staff.php...

CVE-2025-6607

MEDIUM CVSS 6.3 Jun 25, 2025

This critical SQL injection vulnerability in SourceCodester Best Salon Management System 1.0 allows attackers to manipulate database queries through the /panel/stock.php file. Attackers can potentiall...