CVE-2025-3822 | SourceCodester Web-based Pharmacy Product Management System 1.0 changepassword.php cross site scripting
A vulnerability was found in SourceCodester Web-based Pharmacy Product Management System 1.0. It has been rated as problematic. This issue affects some unknown processing of the file changepassword.php. The manipulation of the argument txtconfirm_password/txtnew_password/txtold_password leads to cross site scripting.
The identification of this vulnerability is CVE-2025-3822. The attack may be initiated remotely. Furthermore, there is an exploit available.