CVE-2025-6847: code-projects Simple Forum forum_edit.php sql injection
A vulnerability classified as critical was found in code-projects Simple Forum 1.0. This vulnerability affects unknown code of the file /forumedit.php. The manipulation of the argument iii leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-6847?
CVE-2025-6847 is classified as a critical vulnerability.
What type of vulnerability is CVE-2025-6847?
CVE-2025-6847 is an SQL injection vulnerability affecting Simple Forum 1.0.
How does the exploitation of CVE-2025-6847 occur?
The exploitation of CVE-2025-6847 can be initiated remotely by manipulating the argument 'iii' in the file /forum_edit.php.
What impact does CVE-2025-6847 have on affected systems?
CVE-2025-6847 can lead to unauthorized access to the database, allowing attackers to execute arbitrary SQL queries.
How can I mitigate CVE-2025-6847?
To mitigate CVE-2025-6847, ensure that your version of Simple Forum is updated to the latest patched version that addresses this SQL injection issue.