CVE-2025-8985
A vulnerability was found in SourceCodester COVID 19 Testing Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /profile.php. The manipulation of the argument mobilenumber leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well.
- Affected products
- Covid19 Testing Management System
- Unyasoft covid19 Testing Management System
- = 1.0
- Fix
- Available
- CVSS 3.1
- 9.8 CRITICAL
- EPSS
- 0.4% (35th percentile)
- Weakness
- CWE-74, CWE-89
- NVD status
- Analyzed
- Published
- 2025-08-14
CVE-2025-8985 at NVD
No indexed exploits for CVE-2025-8985 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2025-8985 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.