CVE-2025-6480: code-projects Simple Pizza Ordering System addcatexec.php sql injection
A vulnerability classified as critical was found in code-projects Simple Pizza Ordering System 1.0. This vulnerability affects unknown code of the file /addcatexec.php. The manipulation of the argument textfield leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-6480?
CVE-2025-6480 is classified as a critical vulnerability due to its potential for SQL injection attacks.
How do I fix CVE-2025-6480?
To fix CVE-2025-6480, sanitize and validate all user inputs in the /addcatexec.php file to prevent SQL injection.
What systems are affected by CVE-2025-6480?
CVE-2025-6480 affects the Simple Pizza Ordering System version 1.0 developed by code-projects.
Can CVE-2025-6480 be exploited remotely?
Yes, CVE-2025-6480 can be exploited remotely, allowing attackers to perform SQL injection.
What symptoms might indicate an exploit of CVE-2025-6480?
Signs of an exploit of CVE-2025-6480 may include unexpected database errors or unauthorized data access in the system.