VYPR
High severity8.5NVD Advisory· Published Jan 22, 2026· Updated Apr 27, 2026

CVE-2025-49049

CVE-2025-49049

Description

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in ZoomIt DZS Video Gallery dzs-videogallery allows SQL Injection.This issue affects DZS Video Gallery: from n/a through <= 12.39.

Affected products

2

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.