CVE-2025-0195: code-projects Point of Sales and Inventory Management System del_product.php sql injection
A vulnerability was found in code-projects Point of Sales and Inventory Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /user/delproduct.php. The manipulation of the argument id leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-0195?
CVE-2025-0195 has been rated as critical due to the potential for SQL injection.
How do I fix CVE-2025-0195?
To fix CVE-2025-0195, it is recommended to sanitize and validate all user inputs in the affected /user/del_product.php file.
What software is affected by CVE-2025-0195?
CVE-2025-0195 affects the code-projects Point of Sales and Inventory Management System version 1.0.
What type of vulnerability is CVE-2025-0195?
CVE-2025-0195 is an SQL injection vulnerability that allows an attacker to manipulate database queries.
What are the potential impacts of exploiting CVE-2025-0195?
Exploiting CVE-2025-0195 can result in unauthorized access to sensitive data, data manipulation, or complete system compromise.