Description
A weakness has been identified in code-projects Simple Stock System 1.0. This affects an unknown function of the file /checkuser.php. Executing manipulation of the argument Username can lead to sql injection. The attack can be launched remotely. The exploit has been made available to the public and could be exploited.
Problem types
Product status
Timeline
| 2025-12-17: | Advisory disclosed |
| 2025-12-17: | VulDB entry created |
| 2025-12-17: | VulDB entry last update |
Credits
b1uel0n3 (VulDB User)
References
gist.github.com/b1uel0n3/06593fd15acd0f2f61c29c5595453755
vuldb.com/?id.336983 (VDB-336983 | code-projects Simple Stock System checkuser.php sql injection)
vuldb.com/?ctiid.336983 (VDB-336983 | CTI Indicators (IOB, IOC, TTP, IOA))
vuldb.com/?submit.715228 (Submit #715228 | code-projects Simple Stock System In PHP 1.0 SQL Injection)
gist.github.com/b1uel0n3/06593fd15acd0f2f61c29c5595453755
code-projects.org/
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.