CVE-2025-1871: SQL injection vulnerability in 101news
Published Mar 3, 2025
·Updated
SQL injection vulnerability have been found in 101news affecting version 1.0 through the "category" and "subcategory" parameters in admin/add-subcategory.php.
Affected Software
2 affected components
101news 101news<=1.0
Mayurik Best Online News Portal=1.0
Event History
Mar 3, 2025
CVE Published
via MITRE·12:50 PM
Data Sourced
via MITRE·12:50 PM
DescriptionWeakness
Data Sourced
via NVD·01:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-1871?
CVE-2025-1871 is classified as a high-severity SQL injection vulnerability.
2
How do I fix CVE-2025-1871?
To fix CVE-2025-1871, update to a patched version of 101news that addresses the SQL injection flaw.
3
What versions of 101news are affected by CVE-2025-1871?
CVE-2025-1871 affects 101news version 1.0 and earlier.
4
What is the impact of CVE-2025-1871 on my website?
CVE-2025-1871 can allow attackers to execute arbitrary SQL commands, potentially leading to data leakage or loss.
5
Where can I find more information on CVE-2025-1871?
More information about CVE-2025-1871 can be found in security advisories and vulnerability databases.