CVE-2025-4795
Published
CVSS v3
4.7
MEDIUM
CVSS v2
5.8
MEDIUM
Affected
1
PROJECT
Description
A vulnerability classified as critical has been found in gongfuxiang schoolcms 2.3.1. This affects the function SaveInfo of the file /index.php?m=Admin&c=article&a=SaveInfo. The manipulation of the argument ID leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.