Medium severity6.5NVD Advisory· Published Sep 23, 2025· Updated Jun 17, 2026
CVE-2025-29084
CVE-2025-29084
Description
SQL Injection vulnerability in CSZ-CMS v.1.3.0 allows a remote attacker to execute arbitrary code via the execSqlFile function in the Upgrade.php file.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- CSZ-CMS/CSZ-CMSdescription
Patches
Vulnerability mechanics
References
1- github.com/fax77829yz/CSZ_CMS-exploit/blob/main/README.mdnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.