CVE-2025-15166 | itsourcecode Online Cake Ordering System 1.0 updatesupplier.php?action=edit ID sql injection (EUVD-2025-205539)
A vulnerability labeled as critical has been found in itsourcecode Online Cake Ordering System 1.0. This affects an unknown function of the file /updatesupplier.php?action=edit. The manipulation of the argument ID results in sql injection.
This vulnerability is cataloged as CVE-2025-15166. The attack may be launched remotely. Furthermore, there is an exploit available.