Metrics
Affected Vendors & Products
Tue, 01 Jul 2025 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Code-projects
Code-projects library System |
|
| CPEs | cpe:2.3:a:code-projects:library_system:1.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Code-projects
Code-projects library System |
Mon, 30 Jun 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sun, 29 Jun 2025 00:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability classified as critical has been found in code-projects Library System 1.0. Affected is an unknown function of the file /profile.php. The manipulation of the argument phone leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well. | |
| Title | code-projects Library System profile.php sql injection | |
| Weaknesses | CWE-74 CWE-89 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-06-29T00:31:05.242Z
Updated: 2025-06-30T20:15:43.943Z
Reserved: 2025-06-27T18:35:04.911Z
Link: CVE-2025-6836
Updated: 2025-06-30T20:15:38.639Z
Status : Analyzed
Published: 2025-06-29T01:15:21.267
Modified: 2025-07-01T15:33:33.943
Link: CVE-2025-6836
No data.