CNNVD-202506-3728 Information

CNNVD ID

CNNVD-202506-3728

CVE-2025-6884

  • CNNVD Published: 2025-06-30

Description (Chinese)

Code-Projects Staff Audit System是Code-Projects开源的一个员工审计系统。 Code-Projects Staff Audit System 1.0版本存在安全漏洞,该漏洞源于文件/search_index.php中参数Search的错误操作导致SQL注入。

Description (English)

Code-Projects Staff Audit Systems is an employee audit system open to Code-Projects. There is a security loophole in version 1.0 of Code-Projects Staff Audit System, which stems from the error in the parameter Sach in the file/search index.php, which resulted in the SQL injection.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Code-Projects

Published

2025-06-30

Last Modified

2026-02-24

References

https://github.com/qingchuana/q1ngchuan/issues/8 https://vuldb.com/?id.314363 https://code-projects.org/ https://vuldb.com/?ctiid.314363 https://vuldb.com/?submit.603720 https://access.redhat.com/security/cve/cve-2025-6884

Share on: