PT-2025-41592 · Unknown · Code-Projects Online Job Search Engine

Yongyueyu

·

Published

2025-10-10

·

Updated

2025-10-20

·

CVE-2025-11582

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions code-projects Online Job Search Engine version 1.0
Description A SQL injection issue exists in code-projects Online Job Search Engine 1.0. The flaw is located in the handling of the txtusername parameter within the /registration.php script. Manipulation of this parameter allows an attacker to inject malicious SQL code, potentially compromising the database. The exploit is publicly available.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Special Elements Injection

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2025-11582

Affected Products

Code-Projects Online Job Search Engine