Code-Projects Client Details System是Code-Projects开源的一个客户信息系统。 Code-Projects Client Details System 1.0版本存在注入漏洞,该漏洞源于文件/clientdetails/admin/index.php中参数Username的错误操作导致SQL注入。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| code-projects | Client Details System | 1.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2025-6447 | 7.3 HIGH | code-projects Simple Online Hotel Reservation System index.php sql injection |
| CVE-2025-6421 | 7.3 HIGH | code-projects Simple Online Hotel Reservation System add_account.php sql injection |
| CVE-2025-6420 | 7.3 HIGH | code-projects Simple Online Hotel Reservation System add_room.php sql injection |
| CVE-2025-6419 | 7.3 HIGH | code-projects Simple Online Hotel Reservation System edit_room.php sql injection |
| CVE-2025-6418 | 7.3 HIGH | code-projects Simple Online Hotel Reservation System edit_query_account.php sql injection |
| CVE-2025-6403 | 7.3 HIGH | code-projects School Fees Payment System student.php sql injection |
| CVE-2025-6394 | 7.3 HIGH | code-projects Simple Online Hotel Reservation System add_reserve.php sql injection |
No comments yet