CVE-2025-14834: code-projects Simple Stock System checkuser.php sql injection
A weakness has been identified in code-projects Simple Stock System 1.0. This affects an unknown function of the file /checkuser.php. Executing a manipulation of the argument Username can lead to sql injection. The attack can be launched remotely. The exploit has been made available to the public and could be used for attacks.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-14834?
CVE-2025-14834 is considered a high-severity vulnerability due to its potential for remote exploitation via SQL injection.
How do I fix CVE-2025-14834?
To fix CVE-2025-14834, validate and sanitize all user inputs, particularly the Username argument, to prevent SQL injection attacks.
What software versions are affected by CVE-2025-14834?
CVE-2025-14834 affects version 1.0 of the Code-projects Simple Stock System.
Can CVE-2025-14834 be exploited remotely?
Yes, CVE-2025-14834 can be exploited remotely, allowing attackers to manipulate the Username argument.
What types of attacks can CVE-2025-14834 lead to?
CVE-2025-14834 can lead to SQL injection attacks, potentially compromising the database and allowing unauthorized access to sensitive information.