CVE-2025-1174: 1000 Projects Bookstore Management System Add Book Page process_book_add.php cross site scripting
A vulnerability has been found in 1000 Projects Bookstore Management System 1.0 and classified as problematic. This vulnerability affects unknown code of the file processbookadd.php of the component Add Book Page. The manipulation of the argument Book Name leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-1174?
CVE-2025-1174 is classified as a problematic vulnerability that could lead to cross-site scripting attacks.
How do I fix CVE-2025-1174?
To fix CVE-2025-1174, ensure proper input validation and output encoding for the Book Name parameter in process_book_add.php.
What component is affected by CVE-2025-1174?
CVE-2025-1174 affects the Add Book Page component of the 1000 Projects Bookstore Management System.
Which version of the software is vulnerable to CVE-2025-1174?
CVE-2025-1174 affects version 1.0 of the 1000 Projects Bookstore Management System.
What type of attack does CVE-2025-1174 enable?
CVE-2025-1174 enables cross-site scripting (XSS) attacks through the manipulation of user input.