CVE-2025-8122: Blind SQL Injection in PAD CMS
Improper neutralization of input provided by an authorized user in article positioning functionality allows for Blind SQL Injection attacks. This issue affects all 3 templates: www, bip and ww+bip.
This product is End-Of-Life and producent will not publish patches for this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-8122?
CVE-2025-8122 has a high severity due to the potential for Blind SQL Injection attacks.
How do I fix CVE-2025-8122?
There are no patches available for CVE-2025-8122 as the product is End-Of-Life.
What impact does CVE-2025-8122 have on my system?
CVE-2025-8122 can allow unauthorized access to database information through SQL injection if exploited.
Which software is affected by CVE-2025-8122?
CVE-2025-8122 affects all templates of the PAD CMS system, including www, bip, and ww+bip.
Is it safe to continue using PAD CMS with CVE-2025-8122?
Continuing to use PAD CMS with CVE-2025-8122 may pose security risks since it is vulnerable to SQL injection attacks.