CVE-2025-51660: SQL Injection
Published Jul 14, 2025
·Updated
SemCms v5.0 was discovered to contain a SQL injection vulnerability via the lgid parameter at SEMCMSProducts.php.
Affected Software
2 affected components
SEMCMS SEMCMS
Sem-cms Semcms<=5.0
Event History
Jul 14, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-51660?
The severity of CVE-2025-51660 is classified as high due to its potential for SQL injection exploitation.
2
How do I fix CVE-2025-51660?
To fix CVE-2025-51660, validate and sanitize all user inputs, especially the lgid parameter in SEMCMS_Products.php.
3
What software is affected by CVE-2025-51660?
CVE-2025-51660 affects SemCms version 5.0 and earlier.
4
Can CVE-2025-51660 lead to data leakage?
Yes, CVE-2025-51660 can lead to data leakage or unauthorized access to the database.
5
Are there any known exploits for CVE-2025-51660?
There are known exploits for CVE-2025-51660 that leverage SQL injection techniques.