Metrics
Affected Vendors & Products
Tue, 01 Jul 2025 16:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Code-projects
Code-projects library System |
|
CPEs | cpe:2.3:a:code-projects:library_system:1.0:*:*:*:*:*:*:* | |
Vendors & Products |
Code-projects
Code-projects library System |
Mon, 30 Jun 2025 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Sun, 29 Jun 2025 00:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability classified as critical has been found in code-projects Library System 1.0. Affected is an unknown function of the file /profile.php. The manipulation of the argument phone leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well. | |
Title | code-projects Library System profile.php sql injection | |
Weaknesses | CWE-74 CWE-89 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-06-29T00:31:05.242Z
Updated: 2025-06-30T20:15:43.943Z
Reserved: 2025-06-27T18:35:04.911Z
Link: CVE-2025-6836

Updated: 2025-06-30T20:15:38.639Z

Status : Analyzed
Published: 2025-06-29T01:15:21.267
Modified: 2025-07-01T15:33:33.943
Link: CVE-2025-6836

No data.