CVE-2025-14216: code-projects Currency Exchange System viewserial.php sql injection
Published Dec 8, 2025
·Updated
A vulnerability was determined in code-projects Currency Exchange System 1.0. This issue affects some unknown processing of the file /viewserial.php. This manipulation of the argument ID causes sql injection. The attack is possible to be carried out remotely. The exploit has been publicly disclosed and may be utilized.
Affected Software
2 affected components
Code-projects Currency Exchange System=1.0
Fabian Currency Exchange System=1.0
Event History
Dec 8, 2025
CVE Published
via MITRE·04:32 AM
Data Sourced
via MITRE·04:32 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·05:16 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-14216?
CVE-2025-14216 has a high severity rating due to its potential for remote SQL injection.
2
How do I fix CVE-2025-14216?
To fix CVE-2025-14216, validate and sanitize all user inputs, particularly those interacting with database queries.
3
What is the impact of CVE-2025-14216?
The impact of CVE-2025-14216 includes unauthorized access to sensitive data through SQL injection.
4
Which version of Currency Exchange System is affected by CVE-2025-14216?
CVE-2025-14216 affects version 1.0 of the Currency Exchange System.
5
Is CVE-2025-14216 exploitable remotely?
Yes, CVE-2025-14216 can be exploited remotely.