CVE-2025-62093: WordPress Image&Video FullScreen Background plugin <= 1.6.7 - SQL Injection vulnerability

Published Dec 9, 2025
·
Updated

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in LambertGroup Image&Video FullScreen Background lbgfullscreenfullwidthslider allows SQL Injection.This issue affects Image&Video FullScreen Background: from n/a through <= 1.6.7.

Affected Software

2 affected components
LambertGroup Image&Video FullScreen Background<=1.6.7
wordpress/lbg_fullscreen_fullwidth_slider<=1.6.7

Event History

Dec 9, 2025
CVE Published
via MITRE·02:52 PM
Data Sourced
via MITRE·02:52 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·04:18 PM
DescriptionSeverityWeakness

Frequently Asked Questions

1

What is the severity of CVE-2025-62093?

CVE-2025-62093 is classified as a high severity SQL Injection vulnerability impacting versions of the Image&Video FullScreen Background plugin up to 1.6.7.

2

How do I fix CVE-2025-62093?

To mitigate CVE-2025-62093, update the Image&Video FullScreen Background plugin to a version greater than 1.6.7.

3

What kind of attacks can CVE-2025-62093 enable?

CVE-2025-62093 can enable attackers to execute arbitrary SQL commands on the database, potentially compromising sensitive data.

4

Which software is affected by CVE-2025-62093?

CVE-2025-62093 affects the LambertGroup Image&Video FullScreen Background and the wordpress/lbg_fullscreen_fullwidth_slider plugin versions up to 1.6.7.

5

When was CVE-2025-62093 reported?

CVE-2025-62093 was reported in relation to security vulnerabilities affecting the specified plugin versions.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203