CVE Details
Basic Information
| Title | code-projects Crime Reporting System registration.php sql injection |
|---|---|
| Type | cve |
| Published | 2025-07-08T08:32:05.108Z |
| Modified | 2025-07-08T08:32:05.108Z |
Product Information
| Vendor | code-projects |
|---|---|
| Product | Crime Reporting System |
| Version | 1.0 |
CVSS Information
| Base Score | 6.9 (MEDIUM) |
|---|---|
| Attack Vector | CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P |
AI Analysis
| AI Description | A SQL injection vulnerability in the registration.php file of the Crime Reporting System version 1.0 allows remote attackers to inject malicious SQL code by manipulating the Name argument. This could lead to unauthorized data access or modification. |
|---|---|
| AI Severity | High |
| AI Vendor | code-projects |
| AI Product | Crime Reporting System |
| AI Version | 1.0 |
Affected Products
- code-projects Crime Reporting System 1.0
Additional Information
| CWE List | CWE-89, CWE-74 |
|---|---|
| Source | VulDB |
Description
A vulnerability classified as critical was found in code-projects Crime Reporting System 1.0. Affected by this vulnerability is an unknown functionality of the file /registration.php. The manipulation of the argument Name leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.