SQL Injection Vulnerability in 202CMS v10 Beta by 202CMS
CVE-2019-25538
What is CVE-2019-25538?
The 202CMS v10 beta is vulnerable to an SQL injection attack via the log_user parameter, enabling unauthenticated attackers to execute malicious SQL queries. By crafting specific requests that include harmful SQL statements in the log_user field, attackers can potentially retrieve sensitive data or alter database entries. This vulnerability poses significant risks to the integrity and confidentiality of database information, necessitating prompt attention to secure applications against such threats.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
202CMS v10 beta
References
CVSS V4
Timeline
- ๐ก
Public PoC available
- ๐พ
Exploit known to exist
Vulnerability published
Vulnerability Reserved
