CVE-2025-51658: SQL Injection
Published Jul 14, 2025
·Updated
SemCms v5.0 was discovered to contain a SQL injection vulnerability via the ID parameter at SEMCMSInquiryView.php.
Affected Software
2 affected components
SEMCMS SEMCMS
Sem-cms Semcms<=5.0
Event History
Jul 14, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-51658?
CVE-2025-51658 has a high severity rating due to its potential for SQL injection attacks.
2
How do I fix CVE-2025-51658?
To fix CVE-2025-51658, validate and sanitize all user inputs in the ID parameter to prevent SQL injection.
3
Which versions of SemCms are affected by CVE-2025-51658?
CVE-2025-51658 affects SemCms version 5.0 and earlier versions.
4
What is SQL injection in the context of CVE-2025-51658?
SQL injection in CVE-2025-51658 refers to the exploitation of vulnerabilities through maliciously crafted SQL queries via the ID parameter.
5
Can CVE-2025-51658 be exploited remotely?
Yes, CVE-2025-51658 can be exploited remotely if an attacker has access to the SEMCMS_InquiryView.php script.