Metrics
Affected Vendors & Products
Wed, 07 May 2025 17:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Oretnom23
Oretnom23 stock Management System |
|
CPEs | cpe:2.3:a:oretnom23:stock_management_system:1.0:*:*:*:*:*:*:* | |
Vendors & Products |
Oretnom23
Oretnom23 stock Management System |
Mon, 05 May 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Mon, 05 May 2025 06:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability, which was classified as critical, was found in SourceCodester/oretnom23 Stock Management System 1.0. This affects an unknown part of the file /admin/?page=purchase_order/view_po of the component Purchase Order Details Page. The manipulation of the argument ID leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. | |
Title | SourceCodester/oretnom23 Stock Management System Purchase Order Details Page view_po sql injection | |
Weaknesses | CWE-74 CWE-89 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-05-05T06:00:06.417Z
Updated: 2025-05-05T13:50:46.574Z
Reserved: 2025-05-04T18:17:06.667Z
Link: CVE-2025-4267

Updated: 2025-05-05T13:49:56.927Z

Status : Analyzed
Published: 2025-05-05T06:15:31.897
Modified: 2025-05-07T16:38:08.487
Link: CVE-2025-4267

No data.