CVE-2025-15408

PUBLISHED
1/1/2026 1af790b2-7ee1-4545-860a-a788eba489b5

Technical Description

A vulnerability was found in code-projects Online Guitar Store 1.0. Affected is an unknown function of the file /admin/Create_product.php. Performing manipulation of the argument dre_title results in sql injection. The attack is possible to be carried out remotely. The exploit has been made public and could be used.

Affected Products

code-projects
Online Guitar Store
1.0

References

Impact Analysis

Attack Vector Network
Attack Complexity Low
Privileges Required None