Critical severity10.0NVD Advisory· Published Dec 1, 2025· Updated Jun 17, 2026
CVE-2025-63531
CVE-2025-63531
Description
A SQL injection vulnerability exists in the Blood Bank Management System 1.0 within the receiverLogin.php component. The application fails to properly sanitize user-supplied input in SQL queries, allowing an attacker to inject arbitrary SQL code. By manipulating the remail and rpassword fields, an attacker can bypass authentication and gain unauthorized access to the system.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3= 1.0+ 1 more
- (no CPE)range: = 1.0
- cpe:2.3:a:shridharshukl:blood_bank_management_system:1.0:*:*:*:*:*:*:*
- Blood Bank Management System/Blood Bank Management Systemdescription
Patches
Vulnerability mechanics
References
2- drive.google.com/file/d/12yeOXW_sN69QjsQtW0_k9AGqozi1s0di/viewnvdExploitThird Party Advisory
- github.com/kiwi865/CVEs/blob/main/CVE-2025-63531.mdnvdExploit
News mentions
0No linked articles in our index yet.