First published: Tue Feb 25 2025(Updated: )
Seacms <=13.3 is vulnerable to SQL Injection in admin_collect.php that allows an authenticated attacker to exploit the database.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tina Tinacms | <=13.3 | |
Tina Tinacms | <=13.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-25515 is classified as a high-severity SQL Injection vulnerability that can be exploited by authenticated attackers.
To fix CVE-2025-25515, update Seacms to version 13.4 or later to mitigate the SQL Injection vulnerability.
Any users or organizations running Seacms version 13.3 or earlier are affected by CVE-2025-25515.
CVE-2025-25515 can be exploited through SQL Injection attacks, allowing unauthorized access to the database.
The vulnerable file associated with CVE-2025-25515 is admin_collect.php in Seacms.