Security Advisory

CVE-2019-25303

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-02-06 16:41:37
Last updated 2026-07-15 01:23:47
Assigner VulnCheck
CVSS score 7.1
State PUBLISHED

Description

TheJshen ContentManagementSystem 1.04 contains a SQL injection vulnerability that allows attackers to manipulate database queries through the 'id' GET parameter. Attackers can exploit boolean-based, time-based, and UNION-based SQL injection techniques to extract or manipulate database information by crafting malicious query payloads.