First published: Tue Apr 29 2025(Updated: )
A vulnerability, which was classified as critical, has been found in code-projects Product Management System 1.0. Affected by this issue is the function add_item. The manipulation of the argument st.productname leads to stack-based buffer overflow. An attack has to be approached locally. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
code-projects Product Management System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-4069 is classified as a critical vulnerability.
CVE-2025-4069 affects the code-projects Product Management System version 1.0.
CVE-2025-4069 is a stack-based buffer overflow vulnerability.
CVE-2025-4069 allows attackers to manipulate the argument st.productname, potentially leading to arbitrary code execution.
To fix CVE-2025-4069, you should update to the latest version of the code-projects Product Management System.