CVE Details
Basic Information
| Title | CVE-2025-47671 |
|---|---|
| Type | cve |
| Published | 2025-05-23T13:15:42 |
| Last Seen | 2025-05-23T14:18:54 |
CVSS Information
| Base Score | 7.6 (HIGH) |
|---|---|
| Attack Vector | NETWORK |
| Attack Complexity | LOW |
| Privileges Required | HIGH |
| User Interaction | NONE |
| Scope | CHANGED |
| Confidentiality Impact | HIGH |
| Integrity Impact | NONE |
| Availability Impact | LOW |
AI Analysis
| AI Description | A SQL Injection vulnerability in LETSCMS MLM Software’s Binary MLM Plan allows attackers to inject malicious SQL commands, potentially leading to unauthorized data access and modification. This issue affects versions up to 3.0. |
|---|---|
| AI Severity | Medium |
| Vendor | LETSCMS Team |
| Product | LETSCMS MLM Software |
| Affected Version | up to 3.0 |
Additional Information
| CVE List | CVE-2025-47671 |
|---|---|
| CWE List | CWE-89 |
| Bulletin Family | cve |
Description
Improper Neutralization of Special Elements used in an SQL Command (‘SQL Injection’) vulnerability in LETSCMS MLM Software Binary MLM Plan allows SQL Injection. This issue affects Binary MLM Plan: from n/a through 3.0.
CVSS Score Summary
Base Score: %!f(string=#) (HIGH)