CNNVD-202509-608 Information

CNNVD ID

CNNVD-202509-608

CVE-2025-7385

  • CNNVD Published: 2025-09-04

Description (Chinese)

Concept Intermedia GOV CMS是波兰Concept Intermedia公司的一款用于公共部门的内容管理系统。 Concept Intermedia GOV CMS 4.0之前版本存在SQL注入漏洞,该漏洞源于搜索查询参数清理不当,可能导致盲SQL注入攻击。

Description (English)

Concept Intermedia GOV CMS is a section of the Polish company Concept Intermedia for content management in the public sector. Prior to Concept Intermedia GOV CMS 4.0, there was an injection loophole in SQL, which stemmed from the poor clearance of search query parameters, which could lead to an attack by blind SQL.

Hazard Level

High

Vulnerability Type

SQL注入

Affected Vendor

Concept Intermedia

Published

2025-09-04

Last Modified

2026-02-24

References

https://cert.pl/posts/2025/09/CVE-2025-7385 https://sam3.pl/strona-305-za_co_nas_cenia_redaktorzy.html

Patch

https://sam3.pl/strona-305-za_co_nas_cenia_redaktorzy.html

Share on: