CVE-2025-8165: code-projects Food Review System approve_reservation.php sql injection
Published Jul 25, 2025
·Updated
A vulnerability was found in code-projects Food Review System 1.0 and classified as critical. This issue affects some unknown processing of the file /admin/approvereservation.php. The manipulation of the argument occasion leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
2 affected components
Code-projects Food Review System
Carmelo Food Ordering Review System=1.0
Event History
Jul 25, 2025
CVE Published
via MITRE·06:32 PM
Data Sourced
via MITRE·06:32 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeaknessAffected Software
Jun 16, 58473
Event
via NVD·12:37 PM
Frequently Asked Questions
1
What is the severity of CVE-2025-8165?
CVE-2025-8165 is classified as a critical vulnerability.
2
What kind of vulnerability is CVE-2025-8165?
CVE-2025-8165 is an SQL injection vulnerability affecting the Food Review System.
3
How do I fix CVE-2025-8165?
To fix CVE-2025-8165, validate and sanitize all user inputs before processing them in SQL queries.
4
Which software is affected by CVE-2025-8165?
CVE-2025-8165 affects version 1.0 of the Code-projects Food Review System.
5
Can CVE-2025-8165 be exploited remotely?
Yes, CVE-2025-8165 can be exploited remotely through the affected endpoint.