SQL Injection Vulnerability in MojoJoomla WPAMS Product
CVE-2025-39403

8.5HIGH

Key Information:

Vendor

WordPress

Status
Vendor
CVE Published:
19 May 2025

What is CVE-2025-39403?

The MojoJoomla WPAMS product has a vulnerability allowing improper neutralization of special elements used in SQL commands, resulting in SQL injection. This issue potentially affects versions ranging from n/a through 44.0, posing a risk for unauthorized database access and manipulation. Users of WPAMS should ensure they apply necessary security measures to mitigate this exposure.

Affected Version(s)

WPAMS <= 44.0 (17-08-2023)

References

CVSS V3.1

Score:
8.5
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

CĂşt lá»™n xĂ o me (Patchstack Alliance)
.