A security vulnerability has been detected in SourceCodester Inventory Management System 1.0. The affected element is an unknown function of the component SVC Report Export. Such manipulation leads to csv injection. It is possible to launch the attack remotely. The exploit has been disclosed publicly and may be used.
References
| Link | Resource |
|---|---|
| https://vuldb.com/?ctiid.334671 | Permissions Required VDB Entry |
| https://vuldb.com/?id.334671 | Third Party Advisory VDB Entry |
| https://vuldb.com/?submit.702119 | Third Party Advisory VDB Entry |
| https://www.notion.so/Spreadsheet-Formula-Injection-Leading-to-Remote-Code-Execution-in-SourceCodester-Inventory-Managemen-2b723917db8c80dfaaabe2b74d6f283d?source=copy_link | Exploit Mitigation Third Party Advisory |
| https://www.sourcecodester.com/ | Product |
Configurations
History
10 Dec 2025, 17:41
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://vuldb.com/?ctiid.334671 - Permissions Required, VDB Entry | |
| References | () https://vuldb.com/?id.334671 - Third Party Advisory, VDB Entry | |
| References | () https://vuldb.com/?submit.702119 - Third Party Advisory, VDB Entry | |
| References | () https://www.notion.so/Spreadsheet-Formula-Injection-Leading-to-Remote-Code-Execution-in-SourceCodester-Inventory-Managemen-2b723917db8c80dfaaabe2b74d6f283d?source=copy_link - Exploit, Mitigation, Third Party Advisory | |
| References | () https://www.sourcecodester.com/ - Product | |
| First Time |
Warren-daloyan inventory Management System
Warren-daloyan |
|
| CPE | cpe:2.3:a:warren-daloyan:inventory_management_system:1.0:*:*:*:*:*:*:* |
08 Dec 2025, 11:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-12-08 11:15
Updated : 2025-12-10 17:41
NVD link : CVE-2025-14229
Mitre link : CVE-2025-14229
CVE.ORG link : CVE-2025-14229
JSON object : View
Products Affected
warren-daloyan
- inventory_management_system
