CVE-2025-7199: code-projects Library System notapprove.php sql injection
A vulnerability, which was classified as critical, has been found in code-projects Library System 1.0. This issue affects some unknown processing of the file /notapprove.php. The manipulation of the argument ID leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-7199?
CVE-2025-7199 is classified as a critical vulnerability due to its potential for remote SQL injection attacks.
How do I fix CVE-2025-7199?
To fix CVE-2025-7199, ensure that user inputs are properly sanitized and parameterized queries are used to prevent SQL injection.
What software is affected by CVE-2025-7199?
CVE-2025-7199 affects the code-projects Library System 1.0.
Can CVE-2025-7199 be exploited remotely?
Yes, CVE-2025-7199 can be exploited remotely, allowing attackers to manipulate the ID argument in the /notapprove.php file.
What are the implications of exploiting CVE-2025-7199?
Exploiting CVE-2025-7199 can lead to unauthorized SQL query execution, potentially compromising the database and sensitive information.