CVE-2025-15073: itsourcecode Online Frozen Foods Ordering System contact_us.php sql injection
A vulnerability was determined in itsourcecode Online Frozen Foods Ordering System 1.0. This affects an unknown part of the file /contactus.php. This manipulation of the argument Name causes sql injection. It is possible to initiate the attack remotely. The exploit has been publicly disclosed and may be utilized.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-15073?
CVE-2025-15073 is classified as a high-severity vulnerability due to its potential for remote exploitation through SQL injection.
How do I fix CVE-2025-15073?
To fix CVE-2025-15073, sanitize and validate all user inputs in the /contact_us.php file to prevent SQL injection.
What type of attack can be executed through CVE-2025-15073?
CVE-2025-15073 allows attackers to execute SQL injection attacks, potentially compromising the database.
Is CVE-2025-15073 exploitable remotely?
Yes, CVE-2025-15073 can be exploited remotely, making it particularly dangerous for web applications.
Which software is affected by CVE-2025-15073?
CVE-2025-15073 affects the itsourcecode Online Frozen Foods Ordering System version 1.0.