CVE-2025-7471: code-projects Modern Bag login-back.php sql injection
A vulnerability was found in code-projects Modern Bag 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /admin/login-back.php. The manipulation of the argument user-name leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-7471?
CVE-2025-7471 has been declared as critical due to its potential for SQL injection.
How do I fix CVE-2025-7471?
To fix CVE-2025-7471, ensure proper input validation and parameterized queries to mitigate SQL injection risks.
What functionality is affected by CVE-2025-7471?
CVE-2025-7471 affects the functionality of the file /admin/login-back.php.
What type of attack can be launched using CVE-2025-7471?
An attacker can launch an SQL injection attack by manipulating the argument user-name.
Which software is affected by CVE-2025-7471?
CVE-2025-7471 affects the code-projects Modern Bag version 1.0.