CVE-2025-0206: code-projects Online Shoe Store index.php access control
Published Jan 4, 2025
·Updated
A vulnerability classified as critical was found in code-projects Online Shoe Store 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/index.php. The manipulation leads to improper access controls. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
2 affected components
Code-projects Online Shoe Store
Code-projects Online Shoe Store=1.0
Event History
Jan 4, 2025
CVE Published
via MITRE·12:00 PM
Data Sourced
via MITRE·12:00 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·12:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-0206?
CVE-2025-0206 is classified as a critical vulnerability.
2
How do I fix CVE-2025-0206?
To fix CVE-2025-0206, you should implement proper access control measures in the affected /admin/index.php file.
3
What type of vulnerability is CVE-2025-0206?
CVE-2025-0206 is an improper access control vulnerability.
4
Can CVE-2025-0206 be exploited remotely?
Yes, CVE-2025-0206 can be exploited remotely.
5
Which software is affected by CVE-2025-0206?
CVE-2025-0206 affects version 1.0 of the code-projects Online Shoe Store.