CNNVD-202510-1521 Information

CNNVD ID

CNNVD-202510-1521

CVE-2025-11600

  • CNNVD Published: 2025-10-11

Description (Chinese)

Code-Projects Simple Food Ordering System是Code-Projects开源的一个简单的食品订购系统。 Code-Projects Simple Food Ordering System 1.0版本存在SQL注入漏洞,该漏洞源于对文件editcategory.php中参数cname的错误操作,可能导致SQL注入攻击。

Description (English)

The Code-Projects Simple Food Ordering System is a simple food ordering system open to Code-Projects. Code-Projects Simple Food Ordering System Version 1.0 has an injection loophole in SQL, which is the result of an error in cname of the parameter in file editcategory.php, which could have led to an SQL injection attack.

Hazard Level

High

Vulnerability Type

SQL注入

Affected Vendor

Code-Projects

Published

2025-10-11

Last Modified

2026-02-24

References

https://code-projects.org/ https://github.com/zzonce/cve/issues/1 https://vuldb.com/?ctiid.327921 https://vuldb.com/?id.327921 https://vuldb.com/?submit.671913

Share on: