← voltar
CVE-2025-4795

gongfuxiang schoolcms index.php SaveInfo sql injection

CVSS 5.1 MEDIUMEPSS 0.4%CWE-74CWE-89
A vulnerability classified as critical has been found in gongfuxiang schoolcms 2.3.1. This affects the function SaveInfo of the file /index.php?m=Admin&c=article&a=SaveInfo. The manipulation of the argument ID leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N
Produtos afetados
gongfuxiang · schoolcms

Quer saber se a sua infraestrutura está exposta a isto?

Falar com a TrueHacking →