Trippwastaken · Php-Guitar-Shop · CVE-2025-14091
**Name of the Vulnerable Software and Affected Versions**
TrippWasTaken PHP-Guitar-Shop versions prior to 6ce0868889617c1975982aae6df8e49555d0d555
**Description**
A weakness exists in TrippWasTaken PHP-Guitar-Shop. The issue is related to SQL injection within the Product Details Page component, specifically in the `/product.php` file. Manipulation of the `ID` argument can trigger the injection. This attack can be launched remotely. The exploit has been publicly released.
**Recommendations**
Update TrippWasTaken PHP-Guitar-Shop to a version prior to 6ce0868889617c1975982aae6df8e49555d0d555.