A vulnerability was found in code-projects Online Shopping Store 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /action.php. The manipulation of the argument cat_id/brand_id/keyword/proId/pid leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
                
            References
                    | Link | Resource | 
|---|---|
| https://code-projects.org/ | Product | 
| https://github.com/ez-lbz/poc/issues/5 | Exploit Issue Tracking Third Party Advisory | 
| https://github.com/ez-lbz/poc/issues/6 | Not Applicable | 
| https://vuldb.com/?ctiid.313592 | Permissions Required VDB Entry | 
| https://vuldb.com/?id.313592 | Third Party Advisory VDB Entry | 
| https://vuldb.com/?submit.600694 | Third Party Advisory VDB Entry | 
| https://vuldb.com/?submit.600702 | Third Party Advisory VDB Entry | 
| https://vuldb.com/?submit.600704 | Third Party Advisory VDB Entry | 
| https://vuldb.com/?submit.600705 | Third Party Advisory VDB Entry | 
| https://vuldb.com/?submit.600707 | Third Party Advisory VDB Entry | 
Configurations
                    History
                    11 Jul 2025, 12:13
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () https://code-projects.org/ - Product | |
| References | () https://github.com/ez-lbz/poc/issues/5 - Exploit, Issue Tracking, Third Party Advisory | |
| References | () https://github.com/ez-lbz/poc/issues/6 - Not Applicable | |
| References | () https://vuldb.com/?ctiid.313592 - Permissions Required, VDB Entry | |
| References | () https://vuldb.com/?id.313592 - Third Party Advisory, VDB Entry | |
| References | () https://vuldb.com/?submit.600694 - Third Party Advisory, VDB Entry | |
| References | () https://vuldb.com/?submit.600702 - Third Party Advisory, VDB Entry | |
| References | () https://vuldb.com/?submit.600704 - Third Party Advisory, VDB Entry | |
| References | () https://vuldb.com/?submit.600705 - Third Party Advisory, VDB Entry | |
| References | () https://vuldb.com/?submit.600707 - Third Party Advisory, VDB Entry | |
| CPE | cpe:2.3:a:fabian:online_shopping_store:1.0:*:*:*:*:*:*:* | |
| First Time | 
        
        Fabian
         Fabian online Shopping Store  | 
23 Jun 2025, 20:16
| Type | Values Removed | Values Added | 
|---|---|---|
| Summary | 
        
        
  | 
22 Jun 2025, 17:15
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2025-06-22 17:15
Updated : 2025-07-11 12:13
NVD link : CVE-2025-6484
Mitre link : CVE-2025-6484
CVE.ORG link : CVE-2025-6484
JSON object : View
Products Affected
                fabian
- online_shopping_store
 
