A vulnerability was determined in projectworlds Online Ordering Food System 1.0. This issue affects some unknown processing of the file /all-orders.php. This manipulation of the argument Status causes sql injection. Remote exploitation of the attack is possible. The exploit has been publicly disclosed and may be utilized.
Metrics
Affected Vendors & Products
References
History
Sat, 11 Oct 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was determined in projectworlds Online Ordering Food System 1.0. This issue affects some unknown processing of the file /all-orders.php. This manipulation of the argument Status causes sql injection. Remote exploitation of the attack is possible. The exploit has been publicly disclosed and may be utilized. | |
Title | projectworlds Online Ordering Food System all-orders.php sql injection | |
Weaknesses | CWE-74 CWE-89 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-10-11T14:02:05.580Z
Updated: 2025-10-11T14:02:05.580Z
Reserved: 2025-10-10T13:00:49.927Z
Link: CVE-2025-11604

No data.

Status : Received
Published: 2025-10-11T14:15:36.280
Modified: 2025-10-11T14:15:36.280
Link: CVE-2025-11604

No data.