CVE-2025-63608
EUVD-2025-3700030.10.2025, 13:15
A SQL injection vulnerability exists in CSZ-CMS <=1.3.0 in the Form Builder view functionality. The vulnerability is located in the field parameter of the form viewing feature, allowing authenticated administrators to execute arbitrary SQL queries.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| cszcms | csz_cms | 𝑥 ≤ 1.3.0 |
𝑥
= Vulnerable software versions