CVE-2025-15243: code-projects Simple Stock System login.php sql injection
A flaw has been found in code-projects Simple Stock System 1.0. This affects an unknown function of the file /market/login.php. Executing a manipulation of the argument Username can lead to sql injection. The attack can be launched remotely. The exploit has been published and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-15243?
CVE-2025-15243 is classified as a high-severity vulnerability due to its potential for SQL injection attacks.
How do I fix CVE-2025-15243?
To fix CVE-2025-15243, sanitize and validate user inputs for the Username parameter in the /market/login.php file.
What affected software is associated with CVE-2025-15243?
CVE-2025-15243 affects Code-projects Simple Stock System version 1.0.
Can CVE-2025-15243 be exploited remotely?
Yes, CVE-2025-15243 can be exploited remotely through manipulation of the Username argument.
What type of attack is associated with CVE-2025-15243?
CVE-2025-15243 involves SQL injection, which can allow attackers to manipulate database queries.