CNNVD-202506-3700 Information

CNNVD ID

CNNVD-202506-3700

CVE-2025-6871

  • CNNVD Published: 2025-06-29

Description (Chinese)

SourceCodester Simple Company Website是SourceCodester公司的一个简单公司网站。 SourceCodester Simple Company Website 1.0版本存在注入漏洞,该漏洞源于文件/classes/Login.php中参数Username的错误操作导致SQL注入。

Description (English)

SourceCodester Simple Company Website is a simple corporate website ofourceCodester. SourceCodester Simple Company Version 1.0 has an injection loophole, which results from the error of Username, the parameter in the document/classes/Login.php.

Hazard Level

Medium

Vulnerability Type

注入

Affected Vendor

SourceCodester

Published

2025-06-29

Last Modified

2026-02-24

References

https://vuldb.com/?id.314343 https://vuldb.com/?ctiid.314343 https://github.com/ez-lbz/poc/issues/27 https://www.sourcecodester.com/ https://vuldb.com/?submit.603641 https://access.redhat.com/security/cve/cve-2025-6871

Share on: