First published: Sun May 04 2025(Updated: )
A vulnerability was found in code-projects Nero Social Networking Site 1.0. It has been classified as critical. This affects an unknown part of the file /index.php. The manipulation of the argument fname/lname/login/password2/cpassword/address/cnumber/email/gender/propic/month leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Nero Social Networking Site |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-4250 is classified as critical due to its potential impact on the Nero Social Networking Site.
CVE-2025-4250 specifically affects a part of the file /index.php.
CVE-2025-4250 allows for manipulation of multiple arguments including fname, lname, login, password2, cpassword, address, cnumber, email, gender, propic, and month.
To fix CVE-2025-4250, ensure that proper input validation and sanitization are implemented for the affected parameters in the application.
CVE-2025-4250 affects Nero Social Networking Site version 1.0.