CVE-2025-7756: code-projects E-Commerce Site cross-site request forgery
Published Jul 17, 2025
·Updated
A vulnerability classified as problematic has been found in code-projects E-Commerce Site 1.0. Affected is an unknown function. The manipulation leads to cross-site request forgery. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
2 affected components
Code-projects E-Commerce Site
Fabian E-commerce Site=1.0
Event History
Jul 17, 2025
CVE Published
via MITRE·08:44 PM
Data Sourced
via MITRE·08:44 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeaknessAffected Software
Jun 24, 58473
Event
via NVD·02:24 PM
Frequently Asked Questions
1
What is the severity of CVE-2025-7756?
CVE-2025-7756 is classified as a problematic vulnerability due to potential cross-site request forgery attacks.
2
How do I fix CVE-2025-7756?
To fix CVE-2025-7756, implement anti-CSRF tokens for all state-changing requests in the E-Commerce Site.
3
Can CVE-2025-7756 be exploited remotely?
Yes, CVE-2025-7756 can be exploited remotely, allowing attackers to execute unauthorized actions.
4
What type of vulnerability is CVE-2025-7756?
CVE-2025-7756 is a cross-site request forgery (CSRF) vulnerability.
5
What software is affected by CVE-2025-7756?
CVE-2025-7756 affects the Code-projects E-Commerce Site version 1.0.