CVE-2025-11487: SourceCodester Farm Management System uploadProduct.php sql injection
A security flaw has been discovered in SourceCodester Farm Management System 1.0. Affected by this issue is some unknown functionality of the file /uploadProduct.php. Performing manipulation of the argument Type results in sql injection. The attack may be initiated remotely. The exploit has been released to the public and may be exploited.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-11487?
The severity of CVE-2025-11487 is high due to the risk of SQL injection vulnerabilities.
How do I fix CVE-2025-11487?
To fix CVE-2025-11487, sanitize and validate all user inputs in the /uploadProduct.php file to prevent SQL injection.
What exploit does CVE-2025-11487 pose?
CVE-2025-11487 poses a remote SQL injection vulnerability that may allow attackers to manipulate database queries.
Which version of SourceCodester Farm Management System is affected by CVE-2025-11487?
SourceCodester Farm Management System version 1.0 is affected by CVE-2025-11487.
Who can be targeted by CVE-2025-11487?
CVE-2025-11487 can be exploited by any remote attacker capable of sending specially crafted requests to the vulnerable /uploadProduct.php file.