Skip to main content

Threat Intelligence Database

Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Package: pkg:github/code-projects/currency-exchange-system

Threat Intelligence

Click on any threat for detailed analysis and mitigation recommendations

A security flaw has been discovered in code-projects Currency Exchange System 1.0. The affected element is an unknown function of the file /editotheraccount.php. Performing manipulation of the argument ID results in sql injection. It is possible to initiate the attack remotely. The exploit has been released to the public and may be exploited.

Join the discussion

A vulnerability was identified in code-projects Currency Exchange System 1.0. Impacted is an unknown function of the file /edittrns.php. Such manipulation of the argument ID leads to sql injection. The attack may be performed from remote. The exploit is publicly available and might be used.

Join the discussion

CVE-2025-14216 is a medium-severity SQL injection vulnerability found in version 1.0 of the code-projects Currency Exchange System. The flaw exists in the /viewserial.php file, where improper handling of the 'ID' parameter allows remote attackers to inject malicious SQL commands without authentication or user interaction. Exploiting this vulnerability could lead to unauthorized data access or modification, impacting confidentiality, integrity, and availability of the system. Although no public exploits are currently known in the wild, the vulnerability has been publicly disclosed, increasing the risk of exploitation. European organizations using this software, especially financial institutions or currency exchange services, may face data breaches or operational disruptions. Mitigation requires immediate code review and patching to sanitize inputs, implementing parameterized queries, and monitoring for suspicious database activity. Countries with significant financial sectors and higher adoption of this product are at greater risk. Given the ease of remote exploitation and potential data impact, organizations should prioritize remediation to prevent compromise.

Join the discussion

CVE-2025-14215 is a medium-severity SQL Injection vulnerability found in version 1.0 of the code-projects Currency Exchange System, specifically in the /edit.php file where the ID parameter is improperly sanitized. This flaw allows unauthenticated remote attackers to manipulate SQL queries, potentially leading to data leakage or modification. Although no public exploits are currently known in the wild, the exploit code has been made public, increasing the risk of exploitation. The vulnerability impacts confidentiality, integrity, and availability of the affected system. European organizations using this software, especially financial institutions or currency exchange platforms, could face data breaches or service disruptions. Mitigation requires immediate input validation and parameterized queries, along with monitoring and restricting access to the vulnerable endpoint. Countries with significant financial sectors and usage of this software are at higher risk. The CVSS 4.

Join the discussion

Showing 1 to 4 of 4 results

Filters:Package: pkg:github/code-projects/currency-exchange-system
Page 1 of 1
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses