CVE-2025-2604

CVSS 3.1 Score 5.1 of 10 (medium)

Details

Published Mar 21, 2025
Updated: Apr 1, 2025
CWE ID 89

Summary

CVE-2025-2604 is a critical vulnerability that affects the SourceCodester Kortex Lite Advocate Office Management System version 1.0. The issue lies within an unknown function of the file edit_act.php, allowing attackers to execute SQL injection attacks. This vulnerability can be exploited remotely, making it a significant security risk. The exploit for this weakness has been publicly disclosed, increasing the danger of potential attacks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share