We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.
Please see our statement on Data Privacy.
A vulnerability, which was classified as critical, has been found in code-projects Product Management System 1.0. Affected by this issue is the function add_item. The manipulation of the argument st.productname leads to stack-based buffer overflow. An attack has to be approached locally. The exploit has been disclosed to the public and may be used.
Eine kritische Schwachstelle wurde in code-projects Product Management System 1.0 entdeckt. Es geht hierbei um die Funktion add_item. Mit der Manipulation des Arguments st.productname mit unbekannten Daten kann eine stack-based buffer overflow-Schwachstelle ausgenutzt werden. Der Angriff muss lokal passieren. Der Exploit steht zur öffentlichen Verfügung.
2025-04-29: | Advisory disclosed |
2025-04-29: | VulDB entry created |
2025-04-29: | VulDB entry last update |
zzzxc (VulDB User)
vuldb.com/?id.306506 (VDB-306506 | code-projects Product Management System add_item stack-based overflow)
vuldb.com/?ctiid.306506 (VDB-306506 | CTI Indicators (IOB, IOC, IOA))
vuldb.com/?submit.559516 (Submit #559516 | PRODUCT_MANAGEMENT_SYSTEM stack overflow in add_item function v1.0 Buffer Overflow)
github.com/...643/cve/blob/main/PRODUCT_MANAGEMENT_SYSTEM.md
code-projects.org/
Support options