CVE-2025-7166: SQL Injection in code-projects Responsive Blog Site
A vulnerability was found in code-projects Responsive Blog Site 1.0. It has been classified as critical. This affects an unknown part of the file /single.php. The manipulation of the argument ID leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
CVE-2025-7166: SQL Injection in code-projects Responsive Blog Site
Description
A vulnerability was found in code-projects Responsive Blog Site 1.0. It has been classified as critical. This affects an unknown part of the file /single.php. The manipulation of the argument ID leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Technical Details
- Data Version
- 5.1
- Assigner Short Name
- VulDB
- Date Reserved
- 2025-07-07T07:00:48.812Z
- Cvss Version
- 4.0
- State
- PUBLISHED
Threat ID: 686cc0a16f40f0eb72f236e4
Added to database: 7/8/2025, 6:54:25 AM
Last updated: 7/8/2025, 6:54:25 AM
Views: 1
Related Threats
CVE-2025-6746: CWE-98 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') in xTemos Woodmart
HighCVE-2025-6743: CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in xTemos Woodmart
MediumCVE-2025-7165: SQL Injection in PHPGurukul Cyber Cafe Management System
MediumCVE-2025-7327: CWE-98 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') in techlabpro1 Widget for Google Reviews
HighCVE-2025-7164: SQL Injection in PHPGurukul Cyber Cafe Management System
MediumActions
Need enhanced features?
Contact root@offseq.com for Pro access with improved analysis and higher rate limits.