code-projects Food Ordering System 1.0 /admin/deleteitem.php itemID SQL ଇଞ୍ଜେକ୍ସନ

Dogoggorri kan akka ଜଟିଳ jedhamuun ramadame code-projects Food Ordering System 1.0 keessatti argameera. Miidhaan irra gahe is hojii hin beekamne faayilii /admin/deleteitem.php keessa. Dhugumatti jijjiirraa irratti raawwatame itemID gara SQL ଇଞ୍ଜେକ୍ସନ geessa. Waliigalteewwan CWE fayyadamuun rakkoo ibsuun gara CWE-89 si geessa. Beekumsi kun yeroo 10/26/2025 ifoomsifameera waliin Hainan Century Cyber Security Information Technology Co., Ltd. Odeeffannoon kun buufachuuf github.com irratti dhiyaateera. Dogoggorri kun maqaa CVE-2025-12314 jedhuun tajaajilama. Weerara fageenya irraa jalqabuun ni danda'ama. Odeeffannoon teeknikaa ni argama. Akka dabalataan, meeshaa balaa kana fayyadamuuf argama. Qorannoo miidhaa (exploit) beeksifamee jira, namoonni itti fayyadamuu danda'u. Yeroo ammaa, gatii exploit might be approx. USD $0-$5k beekamuu danda'a. ପ୍ରୁଫ୍-ଅଫ୍-କନ୍ସେପ୍ଟ jedhamee murtaa’eera. Exploit kana github.com irraa buufachuu ni dandeessa. Waggaa 0-day ta'ee, gatiin isaa daldala dhoksaa keessatti $0-$5k jedhamee tilmaamame. Once again VulDB remains the best source for vulnerability data.

5 ଆଡାପ୍ଟେସନ୍ · 99 ପଏଣ୍ଟ

ଫିଲ୍ଡସୃଷ୍ଟି ହୋଇଛି
10/26/2025 06:28 PM
ଅଦ୍ୟତନ 1/4
10/28/2025 07:30 AM
ଅଦ୍ୟତନ 2/4
10/28/2025 09:09 AM
ଅଦ୍ୟତନ 3/4
10/28/2025 10:15 AM
ଅଦ୍ୟତନ 4/4
10/31/2025 08:59 AM
cvss3_vuldb_aLLLLL
cvss3_vuldb_ePPPPP
cvss3_vuldb_rcRRRRR
advisory_urlhttps://github.com/kaka00666/food-ordering-cve/issues/1https://github.com/kaka00666/food-ordering-cve/issues/1https://github.com/kaka00666/food-ordering-cve/issues/1https://github.com/kaka00666/food-ordering-cve/issues/1https://github.com/kaka00666/food-ordering-cve/issues/1
exploit_availability11111
exploit_publicity11111
exploit_urlhttps://github.com/kaka00666/food-ordering-cve/issues/1https://github.com/kaka00666/food-ordering-cve/issues/1https://github.com/kaka00666/food-ordering-cve/issues/1https://github.com/kaka00666/food-ordering-cve/issues/1https://github.com/kaka00666/food-ordering-cve/issues/1
source_cveCVE-2025-12314CVE-2025-12314CVE-2025-12314CVE-2025-12314CVE-2025-12314
cna_responsibleVulDBVulDBVulDBVulDBVulDB
software_typeProject Management SoftwareProject Management SoftwareProject Management SoftwareProject Management SoftwareProject Management Software
cvss2_vuldb_avNNNNN
cvss2_vuldb_acLLLLL
cvss2_vuldb_auMMMMM
cvss2_vuldb_ciPPPPP
cvss2_vuldb_iiPPPPP
cvss2_vuldb_aiPPPPP
cvss2_vuldb_ePOCPOCPOCPOCPOC
cvss2_vuldb_rcURURURURUR
cvss4_vuldb_avNNNNN
cvss4_vuldb_acLLLLL
cvss4_vuldb_prHHHHH
cvss4_vuldb_uiNNNNN
cvss4_vuldb_vcLLLLL
cvss4_vuldb_viLLLLL
cvss4_vuldb_vaLLLLL
cvss4_vuldb_ePPPPP
cvss2_vuldb_rlNDNDNDNDND
cvss3_vuldb_rlXXXXX
cvss4_vuldb_atNNNNN
cvss4_vuldb_scNNNNN
cvss4_vuldb_siNNNNN
cvss4_vuldb_saNNNNN
cvss2_vuldb_basescore5.85.85.85.85.8
cvss2_vuldb_tempscore5.05.05.05.05.0
cvss3_vuldb_basescore4.74.74.74.74.7
cvss3_vuldb_tempscore4.34.34.34.34.3
cvss3_meta_basescore4.74.74.74.76.4
cvss3_meta_tempscore4.34.34.34.56.3
cvss4_vuldb_bscore5.15.15.15.15.1
cvss4_vuldb_btscore2.02.02.02.02.0
advisory_date1761429600 (10/26/2025)1761429600 (10/26/2025)1761429600 (10/26/2025)1761429600 (10/26/2025)1761429600 (10/26/2025)
price_0day$0-$5k$0-$5k$0-$5k$0-$5k$0-$5k
software_vendorcode-projectscode-projectscode-projectscode-projectscode-projects
software_nameFood Ordering SystemFood Ordering SystemFood Ordering SystemFood Ordering SystemFood Ordering System
software_version1.01.01.01.01.0
software_file/admin/deleteitem.php/admin/deleteitem.php/admin/deleteitem.php/admin/deleteitem.php/admin/deleteitem.php
software_argumentitemIDitemIDitemIDitemIDitemID
vulnerability_cweCWE-89 (SQL ଇଞ୍ଜେକ୍ସନ)CWE-89 (SQL ଇଞ୍ଜେକ୍ସନ)CWE-89 (SQL ଇଞ୍ଜେକ୍ସନ)CWE-89 (SQL ଇଞ୍ଜେକ୍ସନ)CWE-89 (SQL ଇଞ୍ଜେକ୍ସନ)
vulnerability_risk22222
cvss3_vuldb_avNNNNN
cvss3_vuldb_acLLLLL
cvss3_vuldb_prHHHHH
cvss3_vuldb_uiNNNNN
cvss3_vuldb_sUUUUU
cvss3_vuldb_cLLLLL
cvss3_vuldb_iLLLLL
company_nameHainan Century Cyber Security Information Technology Co., LtdHainan Century Cyber Security Information Technology Co., LtdHainan Century Cyber Security Information Technology Co., LtdHainan Century Cyber Security Information Technology Co., Ltd
euvd_idEUVD-2025-36344EUVD-2025-36344EUVD-2025-36344
cve_nvd_summaryA vulnerability was found in code-projects Food Ordering System 1.0. The impacted element is an unknown function of the file /admin/deleteitem.php. Performing manipulation of the argument itemID results in sql injection. Remote exploitation of the attack is possible. The exploit has been made public and could be used.A vulnerability was found in code-projects Food Ordering System 1.0. The impacted element is an unknown function of the file /admin/deleteitem.php. Performing manipulation of the argument itemID results in sql injection. Remote exploitation of the attack is possible. The exploit has been made public and could be used.
cvss4_cna_avNN
cvss4_cna_acLL
cvss4_cna_atNN
cvss4_cna_prHH
cvss4_cna_uiNN
cvss4_cna_vcLL
cvss4_cna_viLL
cvss4_cna_vaLL
cvss4_cna_scNN
cvss4_cna_siNN
cvss4_cna_saNN
cvss4_cna_bscore5.15.1
cvss3_cna_avNN
cvss3_cna_acLL
cvss3_cna_prHH
cvss3_cna_uiNN
cvss3_cna_sUU
cvss3_cna_cLL
cvss3_cna_iLL
cvss3_cna_aLL
cvss3_cna_basescore4.74.7
cvss2_cna_avNN
cvss2_cna_acLL
cvss2_cna_auMM
cvss2_cna_ciPP
cvss2_cna_iiPP
cvss2_cna_aiPP
cvss2_cna_basescore5.85.8
cvss3_nvd_avN
cvss3_nvd_acL
cvss3_nvd_prN
cvss3_nvd_uiN
cvss3_nvd_sU
cvss3_nvd_cH
cvss3_nvd_iH
cvss3_nvd_aH
cvss3_nvd_basescore9.8

Interested in the pricing of exploits?

See the underground prices here!