CNNVD-202511-2679 Information

CNNVD ID

CNNVD-202511-2679

CVE-2025-13582

  • CNNVD Published: 2025-11-24

Description (Chinese)

Code-Projects Jonnys Liquor是Code-Projects开源的一个内容与管理系统。 Code-Projects Jonnys Liquor 1.0版本存在SQL注入漏洞,该漏洞源于对文件/detail.php中参数Product的错误操作,可能导致SQL注入。

Description (English)

Code-Projects Jonys Liquor is an open-source content and management system for Code-Projects. The Code-Projects Jonys Liquor Version 1.0 contains an injection loophole in SQL that results from an error in the value of the parameters in the file/detail.php, which may result in SQL injection.

Hazard Level

Medium

Vulnerability Type

SQL注入

Affected Vendor

Code-Projects

Published

2025-11-24

Last Modified

2026-02-24

References

https://github.com/rassec2/dbcve/issues/5 https://vuldb.com/?ctiid.333346 https://code-projects.org/ https://vuldb.com/?submit.699554 https://vuldb.com/?id.333346 https://access.redhat.com/security/cve/cve-2025-13582

Share on: