Skip to main content

CVE-2025-15408

7.3
HIGHCVSS v3.1 Base Score
0.02%
LOW RiskEPSS (6th percentile)

A vulnerability was found in code-projects Online Guitar Store 1.0. Affected is an unknown function of the file /admin/Create_product.php. Performing manipulation of the argument dre_title results in sql injection. The attack is possible to be carried out remotely. The exploit has been made public and could be used.

Published: 1/1/2026
Modified: 1/6/2026
Back to CVE Lookup

Vulnerability Summary

CVSS v3 Score

7.3HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

EPSS Score (Exploitation Probability)

0.02%LOW Exploitation Risk
6th percentile

This vulnerability has a 0.02% probability of being exploited in the next 30 days, ranking higher than 6% of all scored CVEs.

Related Vulnerabilities