CNNVD-202511-967 Information

CNNVD ID

CNNVD-202511-967

CVE-2025-12932

  • CNNVD Published: 2025-11-10

Description (Chinese)

SourceCodester Food Ordering System是SourceCodester开源的一个食品订购系统。 SourceCodester Food Ordering System 1.0版本存在SQL注入漏洞,该漏洞源于对文件/admin.php?id=inbox中参数msgid的错误操作,可能导致SQL注入攻击。

Description (English)

SourceCodester Food Ordering Systems is a food ordering system from the SourceCodester. SourceCodester Food Ordering System Version 1.0 contains an injection loophole in SQL, which stems from an error in the use of msgid as a parameter in the file/admin.php?id=inbox, which may lead to an attack on SQL injection.

Hazard Level

High

Vulnerability Type

SQL注入

Affected Vendor

SourceCodester

Published

2025-11-10

Last Modified

2026-02-24

References

https://github.com/puppytgyh/-CVE/issues/7 https://vuldb.com/?ctiid.331652 https://vuldb.com/?id.331652 https://vuldb.com/?submit.682272 https://www.sourcecodester.com/

Share on: