Security Advisory

CVE-2025-8936

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-08-14 04:32:05
Last updated 2025-08-15 21:35:30
Assigner VulDB
State PUBLISHED

Description

A vulnerability was determined in 1000 Projects Sales Management System 1.0. Affected by this issue is some unknown functionality of the file /superstore/dist/dordupdate.php. The manipulation of the argument select2 leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.