A vulnerability was detected in itsourcecode E-Logbook with Health Monitoring System for COVID-19 1.0. This issue affects some unknown processing of the file /stc-log-keeper/check_profile.php of the component POST Request Handler. The manipulation of the argument profile_id results in cross site scripting. The attack may be launched remotely. The exploit is now public and may be used.
References
| Link | Resource |
|---|---|
| https://github.com/yihaofuweng/cve/issues/21 | Exploit Issue Tracking Third Party Advisory |
| https://itsourcecode.com/ | Product |
| https://vuldb.com/?ctiid.323845 | Permissions Required VDB Entry |
| https://vuldb.com/?id.323845 | Third Party Advisory VDB Entry |
| https://vuldb.com/?submit.646922 | Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2025-09-14 22:15
Updated : 2025-09-18 19:56
NVD link : CVE-2025-10411
Mitre link : CVE-2025-10411
CVE.ORG link : CVE-2025-10411
JSON object : View
Products Affected
emiloi
- e-logbook_with_health_monitoring_system_for_covid-19
