First published: Mon Mar 03 2025(Updated: )
SQL injection vulnerability have been found in 101news affecting version 1.0 through the "username" parameter in admin/check_avalability.php.
Credit: cve-coordination@incibe.es
Affected Software | Affected Version | How to fix |
---|---|---|
101news | <=1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-1869 is classified as a high severity SQL injection vulnerability.
To fix CVE-2025-1869, validate and sanitize user inputs in the 'username' parameter to prevent SQL injection.
CVE-2025-1869 affects version 1.0 of 101news.
CVE-2025-1869 allows attackers to execute arbitrary SQL commands, potentially compromising the database.
You can find more information about CVE-2025-1869 in the official CVE database and security notices.