CVE-2025-65354 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Improper input handling in /Grocery/search_products_itname.php inPuneethReddyHC event-management 1.0 permits SQL injection via the sitem_name POST parameter. Cr…
Critical CVSS: 9.8

CVE-2025-65354

Improper input handling in /Grocery/search_products_itname.php inPuneethReddyHC event-management 1.0 permits SQL injection via the sitem_name POST parameter. Crafted payloads can alter query logic and disclose database contents. Exploitation may result in sensitive data disclosure and backend compromise.
Vendor
Puneethreddyhc
Product
Event Management
CWE
CWE-89
Yayın Tarihi
2025-12-23 20:15:46
Güncelleme
2026-01-06 17:17:13
Source Identifier
cve@mitre.org
KEV Date Added
-

Kategoriler

Referanslar