CVE-2025-4069
29.04.2025, 16:15
A vulnerability, which was classified as critical, has been found in code-projects Product Management System 1.0. Affected by this issue is the function add_item. The manipulation of the argument st.productname leads to stack-based buffer overflow. An attack has to be approached locally. The exploit has been disclosed to the public and may be used.Enginsight
Vendor | Product | Version |
---|---|---|
code-projects | product_management_system | 1.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration