Skip to main content

CVE-2025-11074

7.3
HIGHCVSS v3.1 Base Score
0.04%
LOW RiskEPSS (13th percentile)

A flaw has been found in code-projects Project Monitoring System 1.0. The impacted element is an unknown function of the file /login.php. This manipulation of the argument username/password causes sql injection. The attack may be initiated remotely. The exploit has been published and may be used.

Published: 9/27/2025
Modified: 10/23/2025
Back to CVE Lookup

Vulnerability Summary

CVSS v3 Score

7.3HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

EPSS Score (Exploitation Probability)

0.04%LOW Exploitation Risk
13th percentile

This vulnerability has a 0.04% probability of being exploited in the next 30 days, ranking higher than 13% of all scored CVEs.

Related Vulnerabilities