Abdullah4eb/CVE-2025-50383

Abdullah4eb/CVE-2025-50383

Releases0
A low-privileged user can exploit this via a crafted order_by parameter, causing time-based blind SQL injection.

CVE History

CVEPublishedCVSS v3CVSS v2
8.1 HIGH

alextselegidis Easy!Appointments v1.5.1 was discovered to contain a SQL injection vulnerability via the order_by parameter.