CVE-2025-13571: code-projects Simple Food Ordering System listorder.php sql injection
A vulnerability was determined in code-projects Simple Food Ordering System 1.0. Affected by this issue is some unknown functionality of the file /listorder.php. Executing manipulation of the argument ID can lead to sql injection. The attack may be launched remotely. The exploit has been publicly disclosed and may be utilized.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-13571?
CVE-2025-13571 has been classified as a high severity vulnerability due to its potential for SQL injection attacks.
How do I fix CVE-2025-13571?
To mitigate CVE-2025-13571, sanitize and validate user input in the /listorder.php file to prevent SQL injection.
What systems are affected by CVE-2025-13571?
CVE-2025-13571 affects the Simple Food Ordering System version 1.0 developed by code-projects.
Can CVE-2025-13571 be exploited remotely?
Yes, CVE-2025-13571 can be exploited remotely through SQL injection if the argument ID is manipulated.
What kind of attack can CVE-2025-13571 lead to?
CVE-2025-13571 can lead to unauthorized access to the database and data leakage due to SQL injection.