CNNVD-202512-242 Information

CNNVD ID

CNNVD-202512-242

CVE-2025-12465

  • CNNVD Published: 2025-12-02

Description (Chinese)

Open Solution QuickCMS是Open Solution开源的一个内容管理系统。 Open Solution QuickCMS存在SQL注入漏洞,该漏洞源于对高权限用户输入中和不当,可能导致盲SQL注入攻击。

Description (English)

Open solution QuickCMS is a content management system for Open Solution. Open solution QuickCMS has an injection loophole in SQL, which stems from the misdirection of high-licensed user input and may lead to a blind SQL injection attack.

Hazard Level

High

Vulnerability Type

SQL注入

Affected Vendor

Open Solution

Published

2025-12-02

Last Modified

2026-02-24

References

https://cert.pl/posts/2025/12/CVE-2025-12465/

Share on: