CVE-2025-7459: code-projects Mobile Shop EditMobile.php sql injection
A vulnerability classified as critical was found in code-projects Mobile Shop 1.0. This vulnerability affects unknown code of the file /EditMobile.php. The manipulation of the argument ID leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-7459?
CVE-2025-7459 is classified as a critical vulnerability.
How does CVE-2025-7459 affect the Mobile Shop application?
CVE-2025-7459 affects the /EditMobile.php file and allows for SQL injection through the manipulation of the ID argument.
Can CVE-2025-7459 be exploited remotely?
Yes, CVE-2025-7459 can be exploited remotely by attackers.
What are the potential impacts of exploiting CVE-2025-7459?
Exploiting CVE-2025-7459 could lead to unauthorized access to the database and manipulation of data.
How can I mitigate the risk associated with CVE-2025-7459?
To mitigate the risk of CVE-2025-7459, it is essential to validate and sanitize user inputs in the affected file.