CVE-2025-6938: code-projects Simple Pizza Ordering System editcus.php sql injection
A vulnerability was found in code-projects Simple Pizza Ordering System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /editcus.php. The manipulation of the argument ID leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-6938?
CVE-2025-6938 has been rated as critical due to its potential for SQL injection.
How do I fix CVE-2025-6938?
To fix CVE-2025-6938, sanitize user input and implement parameterized queries to prevent SQL injection.
What is the impact of CVE-2025-6938?
The impact of CVE-2025-6938 allows an attacker to manipulate the 'ID' argument, leading to unauthorized access to the database.
Which software is affected by CVE-2025-6938?
CVE-2025-6938 affects Code-projects Simple Pizza Ordering System version 1.0.
Can CVE-2025-6938 be exploited remotely?
Yes, CVE-2025-6938 can be exploited remotely by an attacker.