Security Advisory

CVE-2019-25300

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-02-06 16:41:36
Last updated 2026-02-06 20:10:29
Assigner VulnCheck
CVSS score 7.1
State PUBLISHED

Description

thejshen Globitek CMS 1.4 contains a SQL injection vulnerability that allows attackers to manipulate database queries through the 'id' GET parameter. Attackers can exploit boolean-based, time-based, and UNION-based SQL injection techniques to potentially extract or modify database information.