Unrated severityNVD Advisory· Published Mar 12, 2026· Updated Mar 12, 2026
Jettweb PHP Hazir Haber Sitesi Scripti V1 SQL Injection via gallery.php
CVE-2019-25516
Description
Jettweb PHP Hazir Haber Sitesi Scripti V1 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the gallery_id parameter. Attackers can send GET requests to gallery.php with malicious gallery_id values using UNION-based SQL injection to extract sensitive database information.
Affected products
1- Range: 1.0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- www.exploit-db.com/exploits/46597mitreexploit
- www.vulncheck.com/advisories/jettweb-php-hazir-haber-sitesi-scripti-v1-sql-injection-via-gallery-phpmitrethird-party-advisory
News mentions
0No linked articles in our index yet.