CVE 5.3 MEDIUM

WeiYe-Jing datax-web sql injection_CVE-2025-13251

5.3 / 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P

Description

A flaw has been found in WeiYe-Jing datax-web up to 2.1.2. Affected is an unknown function. Executing manipulation can lead to sql injection. The attack may be launched remotely. The exploit has been published and may be used.

Basic Information

ID CVE-2025-13251
Source VulDB
Published Nov 16, 2025 at 13:02

Affected Product

Vendor WeiYe-Jing
Product datax-web
Version 2.1.0
Affected Versions WeiYe-Jing datax-web 2.1.0
WeiYe-Jing datax-web 2.1.1
WeiYe-Jing datax-web 2.1.2

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.