Metrics
Affected Vendors & Products
Sat, 12 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Wed, 07 May 2025 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Oretnom23
Oretnom23 stock Management System |
|
| CPEs | cpe:2.3:a:oretnom23:stock_management_system:1.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Oretnom23
Oretnom23 stock Management System |
Mon, 05 May 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 05 May 2025 06:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability, which was classified as critical, was found in SourceCodester/oretnom23 Stock Management System 1.0. This affects an unknown part of the file /admin/?page=purchase_order/view_po of the component Purchase Order Details Page. The manipulation of the argument ID leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. | |
| Title | SourceCodester/oretnom23 Stock Management System Purchase Order Details Page view_po sql injection | |
| Weaknesses | CWE-74 CWE-89 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-05-05T06:00:06.417Z
Updated: 2025-05-05T13:50:46.574Z
Reserved: 2025-05-04T18:17:06.667Z
Link: CVE-2025-4267
Updated: 2025-05-05T13:49:56.927Z
Status : Analyzed
Published: 2025-05-05T06:15:31.897
Modified: 2025-05-07T16:38:08.487
Link: CVE-2025-4267
No data.