Stack-based Buffer Overflow in code-projects Product Management System
CVE-2025-3166
Key Information:
- Vendor
- Code-projects
- Status
- Product Management System
- Vendor
- CVE Published:
- 3 April 2025
Badges
Summary
A stack-based buffer overflow vulnerability was identified in the search_item function of the Product Management System. Manipulation of the target argument can result in a buffer overflow, potentially allowing unauthorized access. The vulnerability requires local access for exploitation and has been publicly disclosed, raising concerns over the safety of affected systems. Proper security measures should be implemented to mitigate risks associated with this vulnerability.
Affected Version(s)
Product Management System 1.0
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
CVSS V4
Timeline
- 🟡
Public PoC available
- 👾
Exploit known to exist
Vulnerability published
Vulnerability Reserved