CVE-2025-2852: SourceCodester Food Ordering Management System view_menu.php sql injection
A vulnerability has been found in SourceCodester Food Ordering Management System up to 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/menus/viewmenu.php. The manipulation of the argument ID leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-2852?
CVE-2025-2852 is classified as a critical vulnerability.
How can I mitigate CVE-2025-2852?
To mitigate CVE-2025-2852, upgrade to a version of the SourceCodester Food Ordering Management System that is newer than 1.0.
What type of vulnerability is CVE-2025-2852?
CVE-2025-2852 is an SQL injection vulnerability affecting the /admin/menus/view_menu.php file.
What systems are affected by CVE-2025-2852?
CVE-2025-2852 affects the SourceCodester Food Ordering Management System versions up to 1.0.
What does the CVE-2025-2852 vulnerability exploit?
CVE-2025-2852 exploits an unknown functionality by manipulating the argument ID in the affected file.