Medium severity5.3NVD Advisory· Published Sep 3, 2025· Updated Jun 17, 2026
CVE-2025-56435
CVE-2025-56435
Description
SQL Injection vulnerability in FoxCMS v1.2.6 and before allows a remote attacker to execute arbitrary code via the. file /DataBackup.php and the operation on the parameter id.
Affected products
3Patches
Vulnerability mechanics
References
1- www.yuque.com/g/u43151774/zhyb2o/udq6lsnv80vnhbr4/collaborator/joinnvdPermissions Required
News mentions
0No linked articles in our index yet.