First published: Tue Feb 25 2025(Updated: )
Seacms <=13.3 is vulnerable to SQL Injection in admin_zyk.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tina Tinacms | <=13.3 | |
Tina Tinacms | <=13.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2025-25519 is classified as critical due to the potential for unauthorized database access.
To fix CVE-2025-25519, upgrade Seacms to version 13.4 or later, which addresses the SQL Injection vulnerability.
CVE-2025-25519 can allow attackers to execute arbitrary SQL commands, compromising sensitive data stored in the database.
If you are using Seacms version 13.3 or earlier, your system is vulnerable to CVE-2025-25519 and should be updated immediately.
The vulnerability specifically affects the admin_zyk.php component in Seacms versions up to and including 13.3.