- Description
- A SQL injection vulnerability exists in the Blood Bank Management System 1.0 within the receiverLogin.php component. The application fails to properly sanitize user-supplied input in SQL queries, allowing an attacker to inject arbitrary SQL code. By manipulating the remail and rpassword fields, an attacker can bypass authentication and gain unauthorized access to the system.
- Source
- cve@mitre.org
- NVD status
- Analyzed
- Products
- blood_bank_management_system
CVSS 3.1
- Type
- Primary
- Base score
- 9.8
- Impact score
- 5.9
- Exploitability score
- 3.9
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Severity
- CRITICAL
- Hype score
- Not currently trending
SECURITY ALERT: CVE-2025-63531 Exploit Fix & Mitigation Guide Read more: https://t.co/eKtTLgsZPT #Cybersecurity #CVE https://t.co/70vBPveXHG
@SecReportCVE
26 Dec 2025
73 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
[CVE-2025-63531: CRITICAL] SQL injection vulnerability found in Blood Bank Management System 1.0's receiverLogin.php. Unsanitized user input in SQL queries allows attackers to bypass authentication and gain ...#cve,CVE-2025-63531,#cybersecurity https://t.co/wda1jWe6d8 https://t.c
@CveFindCom
1 Dec 2025
40 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
CVE-2025-63531 A SQL injection vulnerability exists in the Blood Bank Management System 1.0 within the receiverLogin.php component. The application fails to properly sanitize user-s… https://t.co/nnlhTfUs9n
@CVEnew
1 Dec 2025
163 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
[
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:shridharshukl:blood_bank_management_system:1.0:*:*:*:*:*:*:*",
"matchCriteriaId": "5B391DFD-8072-4642-9A31-9E4DE8648367",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
]