Unknown · Simple Cafe Ordering System · CVE-2025-9025
Name of the Vulnerable Software and Affected Versions:
Simple Cafe Ordering System version 1.0
Description:
A vulnerability exists in the Simple Cafe Ordering System that allows for SQL injection. The issue is located in an unknown functionality within the `/portal.php` file. Manipulation of the `ID` argument can lead to successful exploitation, and the attack can be launched remotely. The exploit has been publicly disclosed.
Recommendations:
At the moment, there is no information about a newer version that contains a fix for this vulnerability.