SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2025-67649

CRITICAL · CVSS 9.3 EPSS 0.27%

Source: NVD + CISA KEV + EPSS · Published 2026-07-31 · Last synced 2026-08-30

CyberRota Analysis

AI-Generated

A SQL injection vulnerability in PHP Jabbers - Car Rental Script allows unauthenticated attackers to manipulate input in sorting function parameters, potentially compromising the database. Organizations using affected versions should prioritize updating to version 4.1 to mitigate the risk of unauthorized data access and manipulation. This vulnerability is particularly critical for businesses relying on this script for managing car rental operations.

CVE
CVE-2025-67649
Severity
CRITICAL
CVSS
9.3
EPSS
0.27%

Original NVD Description

A SQL injection vulnerability has been identified in PHP Jabbers - Car Rental Script . Improper neutralization of input provided by user into parameters responsible for sorting functions allows an unauthenticated attacker to perform SQL Injection attacks. This issue was fixed in version 4.1.