Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Zhanglin

#13547of 53,625
19.6Total CVSS
Vulnerabilities · 2
Critical
2
PT-2025-51153
9.8
2025-12-14
Itsourcecode · Online Cake Ordering System · CVE-2025-14649
**Name of the Vulnerable Software and Affected Versions** itsourcecode Online Cake Ordering System version 1.0 **Description** A SQL injection issue exists in itsourcecode Online Cake Ordering System version 1.0. The issue is located in the `/cakeshop/supplier.php` file. Manipulation of the `supplier` parameter can lead to SQL injection. The attack can be initiated remotely. The exploit is publicly available. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2025-51154
9.8
2025-12-14
Itsourcecode · Online Cake Ordering System · CVE-2025-14650
**Name of the Vulnerable Software and Affected Versions** itsourcecode Online Cake Ordering System version 1.0 **Description** A flaw exists in itsourcecode Online Cake Ordering System 1.0. The issue affects an unknown part of the `/cakeshop/product.php` file. Manipulation of the `Product` argument can lead to SQL injection. The attack can be launched remotely. The exploit has been published. **Recommendations** Apply a fix to address the SQL injection issue in the `/cakeshop/product.php` file related to the `Product` argument.