Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-41034

Опубликовано: 04 сент. 2025
Источник: nvd
CVSS3: 9.8
EPSS Низкий

Описание

An SQL injection vulnerability has been found in appRain CMF 4.0.5. This vulnerability allows an attacker to retrieve, create, update, and delete the database, through the 'data%5BPage%5D%5Bname%5D' parameter in /apprain/page/manage-static-pages/create/.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:apprain:apprain:4.0.5:*:*:*:*:*:*:*

EPSS

Процентиль: 19%
0.00059
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 9.8
github
5 месяцев назад

An SQL injection vulnerability has been found in appRain CMF 4.0.5. This vulnerability allows an attacker to retrieve, create, update, and delete the database, through the 'data%5BPage%5D%5Bname%5D' parameter in /apprain/page/manage-static-pages/create/.

EPSS

Процентиль: 19%
0.00059
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-89