CNNVD-202508-3651 Information

CNNVD ID

CNNVD-202508-3651

CVE-2025-9700

  • CNNVD Published: 2025-08-30

Description (Chinese)

SourceCodester Online Book Store是SourceCodester开源的一个网上书店。 SourceCodester Online Book Store 1.0版本存在安全漏洞,该漏洞源于对文件/publisher_list.php中参数pubid的错误操作导致SQL注入。

Description (English)

SourceCodester OnlineBook Store is an open-source online bookshop of SourceCodester. Security loophole in version 1.0 of SourceCodester Online Book Store, which stems from an error in the application of the pubid parameter in file/publicsher list.php resulting in the injection of SQL.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

SourceCodester

Published

2025-08-30

Last Modified

2026-02-24

References

https://www.sourcecodester.com/ https://vuldb.com/?submit.639215 https://vuldb.com/?id.321920 https://vuldb.com/?ctiid.321920 https://github.com/0510green-hand/cve/issues/3 https://access.redhat.com/security/cve/cve-2025-9700 https://nvd.nist.gov/vuln/detail/CVE-2025-9700

Patch

https://www.sourcecodester.com/php/14550/online-book-store-php-full-source-code.html

Share on: