First published: Sat Jan 04 2025(Updated: )
A vulnerability classified as critical has been found in code-projects Online Shoe Store 1.0. Affected is an unknown function of the file /details2.php. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
code-projects Online Shoe Store | ||
code-projects Online Shoe Store | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-0205 is classified as a critical vulnerability.
CVE-2025-0205 allows for SQL injection through the manipulation of the 'id' argument in the /details2.php file.
Yes, CVE-2025-0205 is exploitable remotely.
CVE-2025-0205 affects version 1.0 of the code-projects Online Shoe Store.
To mitigate CVE-2025-0205, it is recommended to sanitize user inputs in the application to prevent SQL injection.