CVE-2025-7385
SQL Injection in GOV CMS
Input from search query parameter in GOV CMS is not sanitized properly, leading to a Blind SQL injection vulnerability, which might be exploited by an unauthenticated remote attacker.
Versions 4.0 and above are not affected.
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:L/SC:N/SI:N/SA:N
Productos afectados
Concept Intermedia · GOV CMS¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →