CVE-2025-4782: SourceCodester/oretnom23 Stock Management System view_receiving sql injection
A vulnerability has been found in SourceCodester/oretnom23 Stock Management System 1.0 and classified as critical. This vulnerability affects unknown code of the file /sms/admin/?page=receiving/viewreceiving&id=1. The manipulation of the argument ID leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-4782?
CVE-2025-4782 is classified as critical due to its potential for SQL injection attacks.
How does CVE-2025-4782 affect the software?
CVE-2025-4782 affects the SourceCodester oretnom23 Stock Management System by allowing attackers to manipulate the ID parameter for SQL injection.
How can I fix CVE-2025-4782?
To fix CVE-2025-4782, sanitize and validate all user inputs to prevent SQL injection vulnerabilities.
What systems are affected by CVE-2025-4782?
CVE-2025-4782 specifically affects SourceCodester oretnom23 Stock Management System version 1.0.
What kind of attacks can CVE-2025-4782 enable?
CVE-2025-4782 can enable attackers to execute arbitrary SQL commands on the database, potentially compromising sensitive data.