Description
A vulnerability was determined in code-projects Courier Management System 1.0. Affected by this issue is some unknown functionality of the file /search-edit.php. This manipulation of the argument Consignment causes sql injection. The attack can be initiated remotely. The exploit has been publicly disclosed and may be utilized.
Problem types
Product status
Timeline
| 2025-11-17: | Advisory disclosed |
| 2025-11-17: | VulDB entry created |
| 2025-11-17: | VulDB entry last update |
Credits
Labi (VulDB User)
References
github.com/labi1106/cve/issues/2
vuldb.com/?id.332642 (VDB-332642 | code-projects Courier Management System search-edit.php sql injection)
vuldb.com/?ctiid.332642 (VDB-332642 | CTI Indicators (IOB, IOC, TTP, IOA))
vuldb.com/?submit.691792 (Submit #691792 | code-projects Courier Management System V1.0 SQL Injection)
github.com/labi1106/cve/issues/2
code-projects.org/