A vulnerability classified as critical was found in SourceCodester Simple Inventory System 1.0. This issue affects some unknown processing of the file /brand.php. The manipulation of the argument editBrandName results in sql injection.
This vulnerability is identified as CVE-2025-11610. The attack can be executed remotely. Additionally, an exploit exists.