SQL Injection Vulnerability in SemCms 5.0 by SemCms
CVE-2025-51660
5.4MEDIUM
What is CVE-2025-51660?
SemCms version 5.0 has been identified to be vulnerable to a SQL injection flaw via the 'lgid' parameter within the 'SEMCMS_Products.php' file. This vulnerability may allow an attacker to execute arbitrary SQL code, compromising the integrity of the database and potentially exposing sensitive information. Proper input validation and sanitization measures should be implemented to mitigate this risk.