CVE-2025-7512: code-projects Modern Bag contact-back.php sql injection
A vulnerability was found in code-projects Modern Bag 1.0. It has been classified as critical. Affected is an unknown function of the file /contact-back.php. The manipulation of the argument contact-name leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-7512?
CVE-2025-7512 has been classified as critical due to its potential for remote exploitation via SQL injection.
How do I fix CVE-2025-7512?
To fix CVE-2025-7512, sanitize and validate all input parameters in the /contact-back.php file to prevent SQL injection.
What is the impact of CVE-2025-7512?
The impact of CVE-2025-7512 allows attackers to execute arbitrary SQL commands which can compromise the database.
Can CVE-2025-7512 be exploited remotely?
Yes, CVE-2025-7512 can be exploited remotely, making it a considerable risk for affected applications.
What software is affected by CVE-2025-7512?
CVE-2025-7512 affects the Modern Bag version 1.0 from code-projects.