AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2025-12462

UNKNOWN · CVSS N/A EPSS 0.45%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2026-03-02 · Last synced 2026-08-04

CyberRota Analysis

This vulnerability has an unknown severity rating. It may be remotely exploitable. It involves a SQL injection risk. Exploitation may require the attacker to be authenticated.

CVE
CVE-2025-12462
Severity
UNKNOWN
CVSS
N/A
EPSS
0.45%

Original NVD Description

A Blind SQL injection vulnerability has been identified in DobryCMS.  A remote unauthenticated attacker is able to inject SQL syntax into URL path in multiple parameters resulting in Blind SQL Injection. This issue was fixed in versions above 8.0.