Critical severity9.8NVD Advisory· Published Sep 16, 2025· Updated Jul 4, 2026
CVE-2025-57631
CVE-2025-57631
Description
SQL Injection vulnerability in TDuckCloud v.5.1 allows a remote attacker to execute arbitrary code via the Add a file upload module
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- Range: =5.1
=5.1+ 1 more
- (no CPE)range: =5.1
- (no CPE)
- cpe:2.3:a:tduckcloud:tduck:5.1:*:*:*:community:*:*:*
Patches
Vulnerability mechanics
References
2- gist.github.com/Theresasu1/b1b57b3763a286d9491541180c99368bnvdExploit
- github.com/TDuckCloud/tduck-platform/issues/31nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.