code-projects Mobile Shop Management System 1.0 is vulnerable to SQL Injection in /ExAddNewUser.php via the Name, Address, email, UserName, Password, confirm_password, Role, Branch, and Activate parameters.
References
| Link | Resource |
|---|---|
| https://gist.github.com/lih28984-commits/87eacfc32186020a04e03a2af448723f | Third Party Advisory |
| https://gitee.com/Z_180yc/zyy/issues/IDCEJP | Exploit Issue Tracking Third Party Advisory |
Configurations
History
No history.
Information
Published : 2026-01-27 17:16
Updated : 2026-02-02 19:46
NVD link : CVE-2025-69564
Mitre link : CVE-2025-69564
CVE.ORG link : CVE-2025-69564
JSON object : View
Products Affected
fabian
- mobile_shop_management_system
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')
