First published: Tue May 06 2025(Updated: )
A vulnerability classified as critical has been found in itsourcecode Content Management System 1.0. Affected is an unknown function of the file /search_list.php. The manipulation of the argument Search leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
itsourcecode Content Management System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-4300 is classified as critical due to its potential for remote SQL injection.
To fix CVE-2025-4300, ensure that parameters passed to the /search_list.php file are properly sanitized and validated.
CVE-2025-4300 affects version 1.0 of the itsourcecode Content Management System.
Yes, CVE-2025-4300 can be exploited remotely through the manipulation of its search arguments.
CVE-2025-4300 is an SQL injection vulnerability that permits unauthorized database manipulations.