First published: Tue Feb 25 2025(Updated: )
Seacms <=13.3 is vulnerable to SQL Injection in admin_collect_news.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tina Tinacms | <=13.3 | |
Tina Tinacms | <=13.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The CVE-2025-25514 vulnerability is classified as a critical vulnerability due to its potential for unauthorized database access.
To fix CVE-2025-25514, upgrade Seacms to version 13.4 or later to mitigate the SQL Injection risk.
CVE-2025-25514 is an SQL Injection vulnerability that allows attackers to execute arbitrary SQL queries.
The potential impacts of CVE-2025-25514 include data leakage, unauthorized data manipulation, and complete control over the database.
As of now, there have been no public reports indicating widespread exploitation of CVE-2025-25514, but it poses a significant risk.