CVE-2025-3335
CVSS 3.1 Score 7.3 of 10 (high)
Details
Published Apr 7, 2025
Updated: Apr 11, 2025
CWE ID 74
CWE ID 89
Summary
CVE-2025-3335 is a critical vulnerability affecting the codeprojects Online Restaurant Management System 1.0. The issue lies in an unknown part of the /admin/category_update.php file, which can be exploited through a SQL injection attack. By manipulating the ID argument, an attacker can gain unauthorized access to the system. This vulnerability can be exploited remotely, and the exploit has already been disclosed to the public, increasing the risk of potential attacks.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.