A vulnerability classified as critical was found in code-projects Online Bidding System 1.0. Affected by this vulnerability is an unknown functionality of the file /administrator. The manipulation of the argument aduser leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Metrics
Affected Vendors & Products
References
History
Sun, 22 Jun 2025 09:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability classified as critical was found in code-projects Online Bidding System 1.0. Affected by this vulnerability is an unknown functionality of the file /administrator. The manipulation of the argument aduser leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. | |
Title | code-projects Online Bidding System administrator sql injection | |
Weaknesses | CWE-74 CWE-89 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-06-22T09:31:06.748Z
Updated: 2025-06-22T09:31:06.748Z
Reserved: 2025-06-21T05:25:32.439Z
Link: CVE-2025-6471

No data.

Status : Received
Published: 2025-06-22T10:15:21.680
Modified: 2025-06-22T10:15:21.680
Link: CVE-2025-6471

No data.