CNNVD-202508-171 Information

CNNVD ID

CNNVD-202508-171

CVE-2025-8498

  • CNNVD Published: 2025-08-03

Description (Chinese)

Code-Projects Online Medicine Guide是Code-Projects开源的一个在线医学指南。 Code-Projects Online Medicine Guide 1.0版本存在注入漏洞,该漏洞源于文件/cart/index.php中参数uname的错误操作导致SQL注入。

Description (English)

Code-Projects Online Medicine Guide is an online medical guide to the Code-Projects open source. The Code-Projects Online Medicine Guide Version 1.0 has an injection loophole, which originated from the error of uname in the parameters in the document/cart/index.php, resulting in the SQL injection.

Hazard Level

Low

Vulnerability Type

注入

Affected Vendor

Code-Projects

Published

2025-08-03

Last Modified

2026-02-24

References

https://github.com/shokaku-cyb/cve/issues/1 https://vuldb.com/?ctiid.318597 https://code-projects.org/ https://vuldb.com/?submit.626777 https://vuldb.com/?id.318597 https://access.redhat.com/security/cve/cve-2025-8498

Share on: