CVE-2025-6936: code-projects Simple Pizza Ordering System addpro.php sql injection
A vulnerability was found in code-projects Simple Pizza Ordering System 1.0. It has been classified as critical. This affects an unknown part of the file /addpro.php. The manipulation of the argument ID leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-6936?
CVE-2025-6936 has been classified as critical due to the potential for remote SQL injection.
How do I fix CVE-2025-6936?
To fix CVE-2025-6936, you should sanitize and validate all user inputs in the /addpro.php file to prevent SQL injection.
What software is affected by CVE-2025-6936?
CVE-2025-6936 affects the Simple Pizza Ordering System 1.0 developed by code-projects.
Is CVE-2025-6936 exploitable remotely?
Yes, CVE-2025-6936 can be exploited remotely, allowing attackers to inject SQL code.
What kind of attack is associated with CVE-2025-6936?
CVE-2025-6936 is associated with SQL injection attacks, which can compromise the database.