CVE-2019-25541

Publication date

2026-03-12 15:37:11

Family

VulnCheck

State

PUBLISHED

Description

Netartmedia PHP Mall 4.1 contains multiple SQL injection vulnerabilities that allow unauthenticated attackers to manipulate database queries through unvalidated parameters. Attackers can inject time-based blind SQL payloads via the id parameter in index.php or the Email parameter in loginaction.php to extract sensitive database information.