Vulnerabilities > CVE-2025-0488 - Unspecified vulnerability in Native-PHP-Cms Project Native-PHP-Cms 1.0

047910
CVSS 8.8 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
network
low complexity
native-php-cms-project

Summary

A vulnerability classified as critical has been found in Fanli2012 native-php-cms 1.0. This affects an unknown part of the file product_list.php. The manipulation of the argument cat leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

Vulnerable Configurations

Part Description Count
Application
Native-Php-Cms_Project
1