CVE-2025-4487 | itsourcecode Gym Management System 1.0 ajax.php?action=delete_member ID sql injection
A vulnerability was found in itsourcecode Gym Management System 1.0. It has been classified as critical. This vulnerability affects unknown code of the file /ajax.php?action=delete_member. The manipulation of the argument ID leads to sql injection.
This vulnerability is documented as CVE-2025-4487. The attack can be initiated remotely. Additionally, an exploit exists.