CVE-2025-8935
A vulnerability was found in 1000 Projects Sales Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /superstore/custcmp.php. The manipulation of the argument Username leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
- Vendor
- 1000 Projects
- Product
- Sales Management System
- Provider severity
- HIGH, MEDIUM
- Conflicts
- 2