CVE-2025-62093: WordPress Image&Video FullScreen Background plugin <= 1.6.7 - SQL Injection vulnerability
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in LambertGroup Image&Video FullScreen Background lbgfullscreenfullwidthslider allows SQL Injection.This issue affects Image&Video FullScreen Background: from n/a through <= 1.6.7.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-62093?
CVE-2025-62093 is classified as a high severity SQL Injection vulnerability impacting versions of the Image&Video FullScreen Background plugin up to 1.6.7.
How do I fix CVE-2025-62093?
To mitigate CVE-2025-62093, update the Image&Video FullScreen Background plugin to a version greater than 1.6.7.
What kind of attacks can CVE-2025-62093 enable?
CVE-2025-62093 can enable attackers to execute arbitrary SQL commands on the database, potentially compromising sensitive data.
Which software is affected by CVE-2025-62093?
CVE-2025-62093 affects the LambertGroup Image&Video FullScreen Background and the wordpress/lbg_fullscreen_fullwidth_slider plugin versions up to 1.6.7.
When was CVE-2025-62093 reported?
CVE-2025-62093 was reported in relation to security vulnerabilities affecting the specified plugin versions.