CVE-2025-13578: code-projects Library System Login index.php sql injection
A vulnerability has been found in code-projects Library System 1.0. This affects an unknown function of the file /index.php of the component Login. The manipulation of the argument Username leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-13578?
CVE-2025-13578 is considered a high-severity vulnerability due to its potential for remote exploitation via SQL injection.
How do I fix CVE-2025-13578?
To fix CVE-2025-13578, it is recommended to sanitize and validate user inputs in the login functionality to prevent SQL injection.
What type of vulnerability is CVE-2025-13578?
CVE-2025-13578 is an SQL injection vulnerability that affects the login component of the Code-projects Library System.
Who is affected by CVE-2025-13578?
CVE-2025-13578 affects users of the Code-projects Library System version 1.0.
Can CVE-2025-13578 be exploited remotely?
Yes, CVE-2025-13578 can be exploited remotely, making it critical for affected users to address it promptly.