CVE-2025-6343: code-projects Online Shoe Store admin_product.php sql injection
A vulnerability, which was classified as critical, was found in code-projects Online Shoe Store 1.0. Affected is an unknown function of the file /admin/adminproduct.php. The manipulation of the argument pid leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-6343?
CVE-2025-6343 is classified as a critical vulnerability.
What type of vulnerability is CVE-2025-6343?
CVE-2025-6343 is a SQL injection vulnerability found in the Online Shoe Store software.
How can CVE-2025-6343 be exploited?
CVE-2025-6343 can be exploited remotely by manipulating the argument 'pid' in the admin_product.php file.
Who is affected by CVE-2025-6343?
CVE-2025-6343 affects users of the Online Shoe Store 1.0 application developed by code-projects.
How do I fix CVE-2025-6343?
To fix CVE-2025-6343, validate and sanitize all inputs related to SQL queries in the affected software.