CVE-2025-15011

A vulnerability was found in code-projects Simple Stock System 1.0. Impacted is an unknown function of the file /logout.php. The manipulation of the argument uname results in sql injection. The attack can be executed remotely. The exploit has been made public and could be used.

high 7.3 CVSS 3.1
Published: Dec 22, 2025
Modified: Dec 24, 2025
Vendor: Carmelo
Product: Simple Stock System
Versions: 1.0

Description

A vulnerability was found in code-projects Simple Stock System 1.0. Impacted is an unknown function of the file /logout.php. The manipulation of the argument uname results in sql injection. The attack can be executed remotely. The exploit has been made public and could be used.

References

Related CVEs