CVE Details
Basic Information
| Title | code-projects Vehicle Management filter3.php sql injection |
|---|---|
| Type | cve |
| Published | 2025-07-30T19:02:05.922Z |
| Modified | 2025-07-30T19:19:35.407Z |
Product Information
| Vendor | code-projects |
|---|---|
| Product | Vehicle Management |
| Version | 1.0 |
CVSS Information
| Base Score | 6.9 (MEDIUM) |
|---|---|
| Attack Vector | CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P |
Affected Products
- code-projects Vehicle Management 1.0
Additional Information
| CWE List | CWE-89, CWE-74 |
|---|---|
| Source | VulDB |
Description
A vulnerability, which was classified as critical, was found in code-projects Vehicle Management 1.0. This affects an unknown part of the file /filter3.php. The manipulation of the argument company leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well.