{"dataType":"CVE_RECORD","dataVersion":"5.1","cveMetadata":{"cveId":"CVE-2025-1163","assignerOrgId":"1af790b2-7ee1-4545-860a-a788eba489b5","state":"PUBLISHED","assignerShortName":"VulDB","dateReserved":"2025-02-10T08:08:42.956Z","datePublished":"2025-02-10T23:31:04.336Z","dateUpdated":"2025-02-11T16:06:32.583Z"},"containers":{"cna":{"providerMetadata":{"orgId":"1af790b2-7ee1-4545-860a-a788eba489b5","shortName":"VulDB","dateUpdated":"2025-02-10T23:31:04.336Z"},"title":"code-projects Vehicle Parking Management System Authentication login stack-based overflow","problemTypes":[{"descriptions":[{"type":"CWE","cweId":"CWE-121","lang":"en","description":"Stack-based Buffer Overflow"}]},{"descriptions":[{"type":"CWE","cweId":"CWE-119","lang":"en","description":"Memory Corruption"}]}],"affected":[{"vendor":"code-projects","product":"Vehicle Parking Management System","versions":[{"version":"1.0","status":"affected"}],"modules":["Authentication"]}],"descriptions":[{"lang":"en","value":"A vulnerability classified as critical was found in code-projects Vehicle Parking Management System 1.0. This vulnerability affects the function login of the component Authentication. The manipulation of the argument username leads to stack-based buffer overflow. An attack has to be approached locally. The exploit has been disclosed to the public and may be used."},{"lang":"de","value":"In code-projects Vehicle Parking Management System 1.0 wurde eine Schwachstelle entdeckt. Sie wurde als kritisch eingestuft. Das betrifft die Funktion login der Komponente Authentication. Mit der Manipulation des Arguments username mit unbekannten Daten kann eine stack-based buffer overflow-Schwachstelle ausgenutzt werden. Die Umsetzung des Angriffs hat dabei lokal zu erfolgen. Der Exploit steht zur öffentlichen Verfügung."}],"metrics":[{"cvssV4_0":{"version":"4.0","baseScore":4.8,"vectorString":"CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N","baseSeverity":"MEDIUM"}},{"cvssV3_1":{"version":"3.1","baseScore":5.3,"vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L","baseSeverity":"MEDIUM"}},{"cvssV3_0":{"version":"3.0","baseScore":5.3,"vectorString":"CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L","baseSeverity":"MEDIUM"}},{"cvssV2_0":{"version":"2.0","baseScore":4.3,"vectorString":"AV:L/AC:L/Au:S/C:P/I:P/A:P"}}],"timeline":[{"time":"2025-02-10T00:00:00.000Z","lang":"en","value":"Advisory disclosed"},{"time":"2025-02-10T01:00:00.000Z","lang":"en","value":"VulDB entry created"},{"time":"2025-02-10T13:37:03.000Z","lang":"en","value":"VulDB entry last update"}],"credits":[{"lang":"en","value":"j0hn.FFFFF (VulDB User)","type":"reporter"},{"lang":"en","value":"j0hn.FFFFF (VulDB User)","type":"analyst"}],"references":[{"url":"https://vuldb.com/?id.295066","name":"VDB-295066 | code-projects Vehicle Parking Management System Authentication login stack-based overflow","tags":["vdb-entry","technical-description"]},{"url":"https://vuldb.com/?ctiid.295066","name":"VDB-295066 | CTI Indicators (IOB, IOC, IOA)","tags":["signature","permissions-required"]},{"url":"https://vuldb.com/?submit.494008","name":"Submit #494008 | c vehicle-parking-management-system-c-programming v1.0 Stack-based Buffer Overflow","tags":["third-party-advisory"]},{"url":"https://github.com/J0hnFFFF/j0hn_upload_three/blob/main/binary1.pdf","tags":["exploit"]},{"url":"https://code-projects.org/","tags":["product"]}]},"adp":[{"references":[{"url":"https://github.com/J0hnFFFF/j0hn_upload_three/blob/main/binary1.pdf","tags":["exploit"]}],"metrics":[{"other":{"type":"ssvc","content":{"timestamp":"2025-02-11T16:04:57.998135Z","id":"CVE-2025-1163","options":[{"Exploitation":"poc"},{"Automatable":"no"},{"Technical Impact":"partial"}],"role":"CISA Coordinator","version":"2.0.3"}}}],"title":"CISA ADP Vulnrichment","providerMetadata":{"orgId":"134c704f-9b21-4f2e-91b3-4a467353bcc0","shortName":"CISA-ADP","dateUpdated":"2025-02-11T16:06:32.583Z"}}]}}