SQL Injection Vulnerability in DM Corporative CMS by DM Acroweb
CVE-2025-40657
What is CVE-2025-40657?
A SQL injection vulnerability has been identified in DM Corporative CMS that poses a significant risk to database integrity. This flaw allows attackers to execute malicious SQL code through the 'codform' parameter in the '/modules/forms/collectform.asp' file. As a result, an attacker could access sensitive data, modify database records, or even delete critical information. Organizations using this CMS should assess their security posture and apply necessary patches or mitigations to safeguard their databases from potential exploitation.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
DM Corporative CMS 0 < 2025.01
References
CVSS V4
Timeline
Vulnerability published
Vulnerability Reserved
