Metrics
Affected Vendors & Products
Wed, 04 Jun 2025 16:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Foxcms
Foxcms foxcms |
|
CPEs | cpe:2.3:a:foxcms:foxcms:1.2.5:*:*:*:*:*:*:* | |
Vendors & Products |
Foxcms
Foxcms foxcms |
Tue, 27 May 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Sun, 25 May 2025 19:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability has been found in qianfox FoxCMS 1.2.5 and classified as critical. Affected by this vulnerability is the function batchCope of the file app/admin/controller/Article.php. The manipulation of the argument ids leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
Title | qianfox FoxCMS Article.php batchCope sql injection | |
Weaknesses | CWE-74 CWE-89 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-05-25T19:31:04.323Z
Updated: 2025-05-27T14:14:40.875Z
Reserved: 2025-05-24T22:27:11.713Z
Link: CVE-2025-5155

Updated: 2025-05-27T14:14:30.403Z

Status : Analyzed
Published: 2025-05-25T20:15:19.750
Modified: 2025-06-03T15:49:04.067
Link: CVE-2025-5155

No data.