5.3
/ 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Description
A flaw has been found in WeiYe-Jing datax-web up to 2.1.2. Affected is an unknown function. Executing manipulation can lead to sql injection. The attack may be launched remotely. The exploit has been published and may be used.
Basic Information
ID
CVE-2025-13251
Source
VulDB
Published
Nov 16, 2025 at 13:02
Affected Product
Vendor
WeiYe-Jing
Product
datax-web
Version
2.1.0
Affected Versions
WeiYe-Jing datax-web 2.1.0
WeiYe-Jing datax-web 2.1.1
WeiYe-Jing datax-web 2.1.2
WeiYe-Jing datax-web 2.1.1
WeiYe-Jing datax-web 2.1.2