SQL Injection Vulnerability in Netartmedia Deals Portal
CVE-2019-25531
Key Information:
- Vendor
Netartmedia
- Status
- Vendor
- CVE Published:
- 12 March 2026
Badges
What is CVE-2019-25531?
The Netartmedia Deals Portal is susceptible to an SQL injection vulnerability through the Email parameter in loginaction.php. This flaw enables unauthenticated attackers to execute crafted SQL queries via POST requests, providing them the capability to manipulate database operations. As a result, malicious entities could extract sensitive information or even bypass authentication controls, posing a significant risk to user data and overall system integrity.
Affected Version(s)
Netartmedia Deals Portal *
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
CVSS V4
Timeline
- 🟡
Public PoC available
- 👾
Exploit known to exist
Vulnerability published
Vulnerability Reserved
