CNNVD-202508-176 Information

CNNVD ID

CNNVD-202508-176

CVE-2025-8502

  • CNNVD Published: 2025-08-03

Description (Chinese)

Code-Projects Online Medicine Guide是Code-Projects开源的一个在线医学指南。 Code-Projects Online Medicine Guide 1.0版本存在注入漏洞,该漏洞源于文件/changepass.php中参数ups的错误操作导致SQL注入。

Description (English)

Code-Projects Online Medicine Guide is an online medical guide to the Code-Projects open source. Code-Projects Online Medicine Guide Version 1.0 has an injection loophole, which originated from the error of the parameterups in the document/changepass.php, resulting in the SQL injection.

Hazard Level

Medium

Vulnerability Type

注入

Affected Vendor

Code-Projects

Published

2025-08-03

Last Modified

2026-02-24

References

https://github.com/freshfish-hust/my-cves/issues/1 https://vuldb.com/?id.318601 https://code-projects.org/ https://vuldb.com/?submit.626920 https://vuldb.com/?ctiid.318601 https://access.redhat.com/security/cve/cve-2025-8502

Share on: