CVE-2025-11552: code-projects Online Complaint Site category.php sql injection
A vulnerability was identified in code-projects Online Complaint Site 1.0. This impacts an unknown function of the file /admin/category.php. Such manipulation of the argument Category leads to sql injection. It is possible to launch the attack remotely. The exploit is publicly available and might be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-11552?
CVE-2025-11552 has been classified as a high-severity SQL injection vulnerability.
How do I fix CVE-2025-11552?
To fix CVE-2025-11552, update your code to properly sanitize user inputs in the /admin/category.php function.
What systems are affected by CVE-2025-11552?
CVE-2025-11552 affects version 1.0 of the code-projects Online Complaint Site.
Can CVE-2025-11552 be exploited remotely?
Yes, CVE-2025-11552 can be exploited remotely, allowing attackers to perform SQL injection.
What type of vulnerability is CVE-2025-11552?
CVE-2025-11552 is categorized as an SQL injection vulnerability that impacts the handling of user inputs.