CVE 6.9 MEDIUM

CLTPHP search.html sql injection_CVE-2025-12248

6.9 / 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P

Description

A security vulnerability has been detected in CLTPHP 3.0. The affected element is an unknown function of the file /home/search.html. Such manipulation of the argument keyword leads to sql injection. The attack may be performed from remote. The exploit has been disclosed publicly and may be used.

Basic Information

ID CVE-2025-12248
Source VulDB
Published Oct 27, 2025 at 08:02

Affected Product

Vendor n/a
Product CLTPHP
Version 3.0
Affected Versions n/a CLTPHP 3.0

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.