CVE-2019-25444highCWE-89

CVE-2019-25444: high-severity vulnerability in Phpscriptsmall Fiverr Clone Script

Fiverr Clone Script 1.2.2 SQL Injection via page Parameter

Published · Updated

21Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 8.8epss 0.4%
exploitation probability
0.4%top 69% of all CVEs
observed exploitation
nono source reports it
Fiverr Clone Script 1.2.2 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the page parameter. Attackers can supply malicious SQL syntax in the page parameter to extract sensitive database information or modify database contents.
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:L/VA:N/SC:N/SI:N/SA:N
Related CVEs — Phpscriptsmall Fiverr Clone Script

In the same product, most dangerous first.