CVE-2025-12316

Publication date

2025-10-27 20:32:05

Family

VulDB

State

PUBLISHED

Description

A vulnerability was identified in code-projects Courier Management System 1.0. This impacts an unknown function of the file /courier/edit-courier.php. The manipulation of the argument OfficeName leads to sql injection. The attack is possible to be carried out remotely. The exploit is publicly available and might be used.