cve/2025/CVE-2025-29084.md
2025-09-29 21:09:30 +02:00

670 B

CVE-2025-29084

Description

SQL Injection vulnerability in CSZ-CMS v.1.3.0 allows a remote attacker to execute arbitrary code via the execSqlFile function in the Upgrade.php file.

POC

Reference

Github