CNNVD-202602-1001 Information

CNNVD ID

CNNVD-202602-1001

CVE-2019-25300

  • CNNVD Published: 2026-02-06

Description (Chinese)

Project 1 - Globitek CMS是Jason Shen个人开发者的一个网络安全课程。 Globitek CMS 1.4版本存在SQL注入漏洞,该漏洞源于id GET参数存在SQL注入,可能导致攻击者提取或修改数据库信息。

Description (English)

Project 1 - Global CMS is a cyber security course for Jason Shen’s personal developer. Version 1.4 of Globitek CMS has an injection loophole in SQL, which stems from the presence of id GET parameters in SQL, which may lead to the attackers extracting or modifying database information.

Hazard Level

Medium

Vulnerability Type

SQL注入

Affected Vendor

个人开发者

Published

2026-02-06

Last Modified

2026-02-24

References

https://github.com/thejshen/contentManagementSystem https://www.exploit-db.com/exploits/47581 https://www.vulncheck.com/advisories/thejshen-globitek-cms-id-sql-injection

Share on: